New Adobe Reader (Win, Mac, *nix) & Acrobat (Win, Mac) zero-day vulnerability

Subject: New Adobe Reader (Win, Mac, *nix) & Acrobat (Win, Mac) zero-day vulnerability
From: "Edgar D' Souza" <edgar -dot- b -dot- dsouza -at- gmail -dot- com>
To: TECHWR-L <techwr-l -at- lists -dot- techwr-l -dot- com>
Date: Fri, 10 Sep 2010 10:29:17 +0530

Pardon me if you've already learnt of this one, but since PDFs are
part of our everyday computing...

http://www.adobe.com/support/security/advisories/apsa10-02.html
"A critical vulnerability exists in Adobe Reader 9.3.4 and earlier
versions for Windows, Macintosh and UNIX, and Adobe Acrobat 9.3.4 and
earlier versions for Windows and Macintosh. This vulnerability
(CVE-2010-2883) could cause a crash and potentially allow an attacker
to take control of the affected system. There are reports that this
vulnerability is being actively exploited in the wild."

http://blog.metasploit.com/2010/09/return-of-unpublished-adobe.html
"This exploit works on Windows Vista and Windows 7."

http://secunia.com/advisories/41340
"Solution: Do not open untrusted files."

http://contagiodump.blogspot.com/2010/09/cve-david-leadbetters-one-point-lesson.html
(Original reporter/researcher's dump)

(Thanks to a thread on the null mailing list.)

Regards,
Ed.
--
Edgar D'Souza (http://edgar.b.dsouza.googlepages.com/)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^

Create and publish documentation through multiple channels with Doc-To-Help.
Choose your authoring formats and get any output you may need. Try
Doc-To-Help, now with MS SharePoint integration, free for 30-days.
http://www.doctohelp.com

LavaCon 2010 in San Diego Sept 29 - Oct 2 is now open for registration.
Use referral code TECHWR-L for $50 off conference tuition!
See program at: http://lavacon.org/


---
You are currently subscribed to TECHWR-L as archive -at- web -dot- techwr-l -dot- com -dot-

To unsubscribe send a blank email to
techwr-l-unsubscribe -at- lists -dot- techwr-l -dot- com
or visit http://lists.techwr-l.com/mailman/options/techwr-l/archive%40web.techwr-l.com


To subscribe, send a blank email to techwr-l-join -at- lists -dot- techwr-l -dot- com

Send administrative questions to admin -at- techwr-l -dot- com -dot- Visit
http://www.techwr-l.com/ for more resources and info.

Please move off-topic discussions to the Chat list, at:
http://lists.techwr-l.com/mailman/listinfo/techwr-l-chat


Previous by Author: RE: Two Professional Questions
Next by Author: Re: Only for list members working in India: Invitation to participate in STC India’s 2010 Salary Survey
Previous by Thread: RE: Do manuals have to be boring?
Next by Thread: RE: New Adobe Reader (Win, Mac, *nix) & Acrobat (Win, Mac) zero-day vulnerability


What this post helpful? Share it with friends and colleagues:


Sponsored Ads