Adobe Reader and Acrobat PDFs not safe until March
By Asavin Wattanajantra,
Users have been warned about a new threat from malicious PDF files that won’t be fixed until next month, after Adobe's Reader and Acrobat were found to have a critical vulnerability.
In a security bulletin, Adobe warned that the security hole could cause the application to crash and potentially allows an attacker to take control of the affected system. It also said that criminals were already exploiting the flaw.
Adobe are planning to release updates to Adobe Reader and Acrobat to solve the issue, but warned that these wouldn’t be available until 11 March. Adobe said that it was already in contact with anti-virus vendors such as McAfee and Symantec about the issue.
Adobe said users should update their virus definitions and be cautious when opening files from an untrusted source.
Graham Cluley, security consultant at Sophos, said on his blog that hackers could deliberately construct a malformed PDF file which could trigger the vulnerability, allowing them to open a backdoor and run malicious code on your computer.
He said: “This would mean that criminals, for instance, spam out a PDF file that would infect your PC, or plant malicious PDF content on a website.
“As PDF files are so widely used on the internet, and regularly exchanged to share this information, there is an obvious concern that hackers may be quick to take advantage of this vulnerability.”
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
Who to trust after the VeriSign hack?
Davey Winder questions what data was stolen from VeriSign and wonders why the company hasn't been more forthcoming.
- Striving to solve the security skills crisis
- Would you employ a hacker or malware writer?
- Q&A: Raj Samani, CTO McAfee
- Erase and rewind: the EU and privacy
- My email address is [CENSORED]
- Is there such a thing as a secure tablet?
- 2011: The year in news
- BYOD: Old or new, good or bad?
- Are the cookie laws crumbling already?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- Google releases Chrome for Android beta
- Will someone rid me of these troublesome Macs?
- OneNote hits Google?s Android
- BlackBerry Bold 9790 review
- Google sends in Bouncer to sort out malicious apps
- Ubuntu vs. Windows 7 on the business desktop
- Who to trust after the VeriSign hack?
- Head to Head: Mac OS X 10.7 Lion vs Windows 7
- ACTA: the basics, the controversies, and the future
- BT considering Ofcom price cap appeal
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





