ITSS-Advisory : MEDIUM : Adobe : Adobe Reader and Adobe Acrobat : Arbitrary Code Execution
THREAT LEVEL
============
Medium.
INFORMATION
===========
On 09 June 2009, Adobe released a bulletin describing vulnerabilities in
Adobe Reader and Adobe Acrobat. Accessing a specially crafted PDF file
may allow an attacker to crash the application or execute arbitrary code
on the affected computer system.
More information is available at:
- http://www.adobe.com/support/security/bulletins/apsb09-07.html
- http://www.kb.cert.org/vuls/id/568153
AFFECTED PLATFORMS
==================
Computers of various operating systems running:
- Adobe Reader 9.1.1 and earlier versions
- Adobe Acrobat Standard 9.1.1 and earlier versions
- Adobe Acrobat Pro 9.1.1 and earlier versions
- Adobe Acrobat Pro Extended 9.1.1 and earlier versions
ACTION
======
Administrators of affected computers are advised to review the bulletins,
test and apply relevant updates.
Links to download Adobe Reader are available at:
http://www.adobe.com/
|