madison

Researchers find hole in Adobe fix

Ben Woods ZDNet UK | July 2, 2010 10:46 AM PDT

Summary

The out-of-cycle Adobe Reader and Acrobat patch released on Tuesday has failed to remedy an issue that could allow an attacker to run malicious code, according to a Vietnamese security company.

The out-of-cycle Adobe Reader and Acrobat patch released on Tuesday has failed to remedy an issue that could allow an attacker to run malicious code, according to a Vietnamese security company.

The version 9.3.3 update for the PDF software products was designed to plug several security problems, including one connected with the Launch dialogue box that could coax a user into opening an embedded executable file. Belgian security researcher Didier Stevens, who reported the issue to Adobe in March, confirmed in a blog post following the release of the patch that the problem was fixed.

However, according to Bach Khoa Internetwork Security centre (Bkis), the update has failed to fully remedy the issue, which Vietnamese antivirus provider said is being used by viruses in attacks. In a post on the Bkis security blog, senior security researcher Le Manh Tung argued that the fix could still be circumvented.

For more on this story, read Researchers find workaround for Adobe PDF fix on ZDNet UK.

Talkback Most Recent of 3 Talkback(s)

  • Yeah so?
    Not like your puter is trashed evey time some flaw is discovered. Good info to know but some people dwell on the fact that this and that can get through for a small period of time on any operating system or add on. I have been using puters and working on commercial puter systems since the 8080 before the co processor and have seen minimal problems as long as normal basic precautions are followed.
    So don't freak out and start with the windowz sux crap.
    ZDNet Gravatar
    MoeFugger
    2nd Jul 2010
  • RE: Researchers find hole in Adobe fix
    @MoeFugger: "...as long as normal basic precautions are followed."

    Thanks to poisoned ad networks, this isn't much of a guarantee anymore. Good luck with that.
    ZDNet Gravatar
    Random_Walk
    4th Jul 2010
  • RE: Researchers find hole in Adobe fix
    @MoeFugger

    Man you are a dumb *ss "puters" Well yee haw their Billy Bob i am guessing you wear bib over halls and *uck you sister or maybe your cousin. The word is COMPUTER OR PC not """puters"""
    ZDNet Gravatar
    MLHACK
    16th Jul 2010

Talkback - Tell Us What You Think

Formatting +
BB Codes - Note: HTML is not supported in forums
  • [b] Bold [/b]
  • [i] Italic [/i]
  • [u] Underline [/u]
  • [s] Strikethrough [/s]
  • [q] "Quote" [/q]
  • [ol][*] 1. Ordered List [/ol]
  • [ul][*] · Unordered List [/ul]
  • [pre] Preformat [/pre]
  • [quote] "Blockquote" [/quote]

The best of ZDNet, delivered

ZDNet Newsletters

Get the best of ZDNet delivered straight to your inbox

Facebook Activity