Adobe fixes critical bugs in Reader, Acrobat and RoboHelp publishing tool

By

Updates Adobe Reader XI and Acrobat XI from version 11.0.04 to 11.0.05.

Adobe has released security updates for its popular Reader and Acrobat products for Windows users.

Adobe fixes critical bugs in Reader, Acrobat and RoboHelp publishing tool

The fixes addressed a critical vulnerability (CVE-2013-5325) resolving a regression that permitted the launch of javascript scheme uniform resource identifiers (URIs) while users viewed a PDF in their web browser, Adobe said.

With the updates, a critical flaw (CVE-2013-5327) in Adobe publishing tool RoboHelp 10 for Windows users was also addressed. A memory corruption bug that could allow a saboteur to execute malicious code was fixed with the patch.

Sophos chief technology officer Paul Ducklin said it was doubtful that illegal software modifications made by hackers who recently stole Adobe source code would be noticed.

“My own opinion is that this is highly unlikely, not least because modern software engineering tools make it comparatively easy to track the changes to the source code files in a product between builds,” Ducklin wrote.

"Also, remember that this patch deals with fixing a regression – 'repatching' a previous patch – rather than with a shepherding in [of] a huge raft of changes throughout the product.”

This article originally appeared at scmagazineus.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Rogue communication devices found in Chinese solar power inverters

Rogue communication devices found in Chinese solar power inverters

Circles.Life fined over identity checking failures during mobile porting

Circles.Life fined over identity checking failures during mobile porting

Vic gov to spend $100m on cyber security

Vic gov to spend $100m on cyber security

EU, US authorities take down malware network

EU, US authorities take down malware network

Log In

  |  Forgot your password?