Adobe Acrobat 8 full of holes

By

Users of version 8 of Adobe's ubiquitous PDF reader software should patch immediately to version 8.1.3 or upgrade to version 9 to prevent problems caused by serious flaws in the software.

Adobe Acrobat 8 full of holes
Version 8.1.2 suffers from a stack buffer overflow when parsing some invalid PDF files.

The vulnerability is caused by a boundary error when parsing format strings containing a floating point specifier in a certain JavaScript function.

The vulnerability requires that users open a maliciously crafted PDF file thereby allowing attackers to gain access to vulnerable systems and assume the privileges of a user running Acrobat Reader.

Adobe Reader version 9, which was released in June 2008, is not vulnerable to the problem.
Got a news tip for our journalists? Share it with us anonymously here.
theinquirer.net (c) 2010 Incisive Media
Tags:

Most Read Articles

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

Service NSW centralises security, networking in mammoth CloudOps overhaul

Service NSW centralises security, networking in mammoth CloudOps overhaul

VicRoads to phase out passwords in favour of passkeys

VicRoads to phase out passwords in favour of passkeys

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

Log In

  |  Forgot your password?