Zero-day vulnerability in Adobe Flash Player
http://www.h-online.com/security/Zero-day-vulnerability-in-Adobe-Flash-Player-Reader-and-Acrobat--/news/113828
A patch will not be available before the 30th of July.
Note that Windows, Linux and Mac are all vulnerable,
and that disabling Javascript does not protect you,
because the flaw is in Flash Player -- making it crash
can be used to execute any appended code.
Only disabling Flash in the browser is safe.
I would propose using two different K-Meleon versions
at the same time, one of them with disabled flash plugin
(temporarily renamed), and the other one with Flash
enabled, to use only for indispensable things, like
Internet TV or similar.
Forcing a second profile can be achieved from the
command line by adding -new at the end, which
should start a new browser instance (since KM 1.1).
Fred