The Register ®

Biting the hand that feeds IT

The Register » Security »

Original URL: http://www.theregister.co.uk/2007/01/11/adobe_reader_update/

Adobe Reader update lances multiple bugs

By John Leyden
Published Thursday 11th January 2007 14:47 GMT

Adobe has fixed a security vulnerability (http://secunia.com/advisories/23666) in its Reader software that created a mechanism for hackers to commandeer vulnerable systems.

The unspecified heap corruption flaw affects Adobe Reader versions 6.x and 7.x and means users tricked into opening malformed PDF documents might be exposed to malware. Credit for discovering the bug (http://www.piotrbania.com/all/adv/adobe-acrobat-adv.txt) goes to security researcher Piotr Bania.

Users are advised to upgrade to reader version 7.0.9 or upgrade to version 8.0, as explained in an advisory by Adobe here (http://www.adobe.com/support/security/bulletins/apsb07-01.html). Updating to Adobe Reader version 8.0 also fixes a variety (http://secunia.com/advisories/23483) of other security vulnerabilities discovered last week. ®

© Copyright 2008