Apple Ships Vulnerable Adobe Flash with 'Snow Leopard,' Sophos Reports

Apple Ships Vulnerable Adobe Flash with ‘Snow Leopard,’ Sophos Reports

Written By
Brian Prince
Brian Prince
Sep 2, 2009
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Apple is pushing out an older, vulnerable version of Adobe Flash Player with its “Snow Leopard” operating system upgrade, according to Sophos.

Snow Leopard, aka Mac OS X 10.6, hit the streets Aug. 28 with much fanfare about promised performance improvements. Apple also generated some buzz by including a malware scanner in the mix to analyze downloads for two known Trojan families.

However, the updated operating system also includes a version of Adobe Flash Player that is vulnerable to several bugs. During the update process, Apple silently downgrades the latest version of Flash Player for Mac-Version 10.0.32.18-to Version 10.0.23.1, Sophos reported Sept. 2.

“Mac users are not informed that Snow Leopard has downgraded their version of Flash without permission and that they are now exposed to a raft of potential attacks and exploits [that have targeted] Adobe’s software in recent months,” blogged Graham Cluley, senior technology consultant at Sophos.

Adobe, as Cluley pointed out, has become a popular target for attackers. August statistics from Trusteer showed that nearly 80 percent of the roughly 2.5 million users Trusteer scanned were running vulnerable versions of Flash.

“Adobe is the ‘new Microsoft’ when it comes to security vulnerabilities, with hackers targeting their software looking for vulnerabilities to exploit,” Cluley wrote in the blog post.

“If you’re not sure which version of Adobe Flash you have on your computer (whatever operating system you use), take 30 seconds to visit their Website,” he added. “Adobe will not only tell you what version of Flash you are running, they will also tell you what version you should be running.”

Apple did not respond to a request for comment about the issue.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.