On TV.com: College 3-some Too Hot for Network TV?
BNET Business Network:
BNET
TechRepublic
ZDNet

By Dawn Kawamoto
Posted on ZDNet News: Jan 10, 2007 8:44:00 PM

Adobe Systems has issued updates to fix security flaws in its Reader and Acrobat software that could allow an attacker to remotely commandeer a computer.

The vulnerabilities affect Adobe Reader and Adobe Acrobat Standard, Professional and Elements versions 7.0.8 and earlier, as well as Adobe Acrobat 3D, Adobe said in its advisory. Secunia rated the Reader flaw as "highly critical."

The version 7.0.9 updates issued Tuesday are designed to address holes that could allow outsiders to gain access to hard-disk drives via a malicious link that targets PDF files on vulnerable computers.

The attackers could then take the compromised system and read and delete files, execute programs and forward information from the computer.

Adobe recommends that Reader users upgrade to Reader 8, the most recent major version, to fix the problem. Those whose computer systems are not compatible, or who do not want to move to version 8 can install Tuesday's 7.0.9 version instead.

That means people will have to do a full installation of a software version to protect their computers. Typically, companies will provide a patch to fix security holes--a less time-consuming process--but Adobe has not done that in this case.

The 7.0.9 update is slightly larger than a patch, an Adobe representative said. The company was already working on the update when it added the security features, so Adobe was able to get out a full installation faster than it would for just a patch, the representative added.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 4 Talkback(s)
Adobe tackles risky hole in PDF
My fix for all my machines "popped up" as critical update on my admin machine so we downloaded and applied... (Read the rest)
Posted by: puppadave Posted on: 01/17/07 You are currently: a Guest | | Terms of Use
does it work with Evince Document Viewer?  galileon | 01/10/07
Adobe Criical Patch  BluewaterBridge | 01/11/07
Adobe tackles risky hole in PDF  puppadave | 01/17/07
Waiting Game  2situla@... | 01/16/07

What do you think?

advertisement
advertisement

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here