Adobe has released an update to Flash Player, bringing it to version 24.0.0.194, now available from here.
Because of the risk of obtaining malware posing as Flash updates, be assiduously careful to download this only from Adobe’s secure site.
This update fixes two significant bugs, one of which could result in a socket connection failing with a security error #2048.
The security fixes address vulnerabilities which Adobe assess as critical, and could allow an attacker to take control of the affected system. The vulnerabilities include one which could bypass security to result in information disclosure, three that could lead to code execution because of use-after-free errors, four heap buffer overflows which could lead to code execution, and five memory corruption vulnerabilities which could lead to code execution: a total of thirteen vulnerabilities.
They don’t seem to get any less.