See Security bulletin released November 14.
Update available for HTTP Header Injection Vulnerabilities in Adobe Flash Player
[indent]
“Severity rating
Adobe categorizes this as an important issue and recommends affected users upgrade to version 9.0.28.0.”
[ ]
“Affected software versions
Adobe Flash Player 9.x, 8.x, and 7.x. The custom-header addition feature was added starting with Adobe Flash Player 7, thus Flash Player 6 and earlier are not affected. [ ]”
[ ]
“Solution
Adobe recommends all users of Adobe Flash Player 9.0.20.0 and earlier versions upgrade to the newest version 9.0.28.0, by downloading it from the Player Download Center, or by using the auto-update mechanism within the product when prompted. [ ]”
[/indent]
Flash Player Download Center
Flash Player Release Notes (Adobe Flash Player 9)
[indent]
“Fixes and Improvements in Flash Player 9.0.28.0
- Flash Player 9 now supports the Windows Vista operating system.
- Flash Player 9 now supports full screen mode in the web players, enabling greater immersive experiences for Flash, Flex and Flash video content. For more information about how to use this feature, see [article]. [ ]”
[/list]
[/indent]
And some other improvements and a bunch of fixes. As usual, there is one player for Firefox, Mozilla, Netscape, Opera plugin-based, and a another download for the IE. Downloads depends on what browser you use to visit Flash Player Download Center. I still have not found the standalone installer for IE (Active X). If someone finds a way to download that one also, please tell me.