PDF attacks through Adobe Flash, Reader hole
Today Adobe warned about a NEW critical vulnerability in Flash, Adobe Reader, and Acrobat 9.x that is currently being used to attack computers. Adobe is NOT currently aware of any attacks targeting Flash Player, according to a company blog post.
A CNET article by Elinor Mills states:
“The bug is in Flash Player 10.1.85.3 and earlier versions for Windows, Mac, Linux, and Solaris, and Flash Player 10.1.95.2 and earlier for Android. It also is in the authplay.dll component in Reader 9.4 and earlier 9.x versions for Windows, Mac, and Unix, and Acrobat 9.4 and earlier 9.x versions for Windows and Mac. The component renders Flash content in the PDF viewer.”
The flaw does not affect Adobe Reader and Acrobat 8.x and Reader for Android, according to Adobe. ThreatExpert says that current attacks drop a Trojan onto the computers of victims, which steals sensitive data and loads malware, although the hole COULD be used to take control of the system. Adobe expects to provide a fix in a Flash Player update on November 9 and in updates for Reader and Acrobat 9.x during the week of November 15. Workarounds are in this security advisory.
With the fix for a hole in Shockwave Player this afternoon and for 23 holes in Reader and Acrobat this month (including two that were used in attacks), Adobe has been VERY busy, indeed!
-Bill at
Cheshire Cat Photo™ – “Your Guide to California’s Wonderland™”
You can view higher-resolution photos (*generally* 7-30 megabytes, compressed) at the Cheshire Cat Photo™ Pro Gallery on Shutterfly™, where you can also order prints and gifts decorated with the photos of your choice from the gallery. The Cheshire Cat Photo Store on Zazzle contains a wide variety of apparel and gifts decorated with our images of California. Framed prints and prints on canvas can be ordered from our galleries on redbubble®. All locations are accessible from here. Be a “Facebook Fan” of Cheshire Cat Photo here! If you don’t see what you want or would be on our email list for updates, send us an email at info@cheshirecatphoto.com.
©2010 William F. Hackett. All Rights Reserved.