Skip to Content

Submit your nominations for the Luxist Awards' Best in Decor
AOL Tech

Filed under: Security, Office, Adobe

Yet another security flaw surfaces in Adobe Reader

It hasn't been the best couple of weeks for Adobe Reader.

First there was the advice from F-Secure's Mikko Hypponen to stop using Reader and switch to an alternative. Now there's word of a new security flaw that is known to affect versions 8.14 and 9.1 for Linux and could also affect other versions of the program on other operating systems.

The exploit takes advantage of the javascript getAnnots() function in Reader and could, as with its predecessor, allow an attacker to remotely execute arbitrary code.

Even the U.S. Department of Homeland Security is on the case. They advise temporarily disabling javascript as an intermediate fix:
"To disable JavaScript in Adobe Reader, open the General Preferences dialog box. From the Edit-Preferences-JavaScript menu, un-check Enable Acrobat JavaScript."
Adobe has acknowledged the problem in a blog post, though it states nothing more than "we know about it, and we'll have an update once we get more information." Security is serious business. Let's hope Adobe jumps to the pump this time and promptly issues a patch.

[via CNet]
jobs & resumes
iPhone developer

Groupon - Chicago, IL (4 weeks ago)

See More Relevant Jobs ›

Reader Comments (Page 1 of 1)

Featured Time Waster

The Atari classics are back and free to play! Asteroids, Lunar Lander and MORE!

digg_url = 'http://www.downloadsquad.com/2009/11/25/the-atari-classics-are-back-and-free-to-play-asteroids-lunar-l/'; Believe it or not, Atari have just released a bunch of old games on their own website. These aren't clones, these aren't even 'loving interpretations' -- these are the real thing, remade by Atari themselves. This comes as part of a re-launch for the Atari website which includes an online store. I warn you, if you read on, this might turn into more than just a mere ten-minute time-waster. ...

View more Time Wasters

Featured Galleries

Defective by Design, London: Protest Pictures
Livescribe Store
Microsoft Security Essentials
Chromium Pre-Alpha on CrunchBang Linux
Safari 4 Beta
10 Firefox themes that don't suck
IE8 RC1
Download Squad at the Crunchies After-Party
Download Squad at the Crunchies
WordPress 2.7
Cooking Mama: Mama Kills Animals
Windows 7 Hands On
Comodo Internet Security
Android First-look: Amazon.com MP3 Store
Android First-look: Twitroid
Google Reader Android
Android Hands-On
Twine 1.0
Photoshop Express Beta
Mozilla Birthday Cake
Palm stuff

 


Follow us on Twitter!

Flickr Pool

www.flickr.com

More Tech Coverage

AOL Radio