Adobe Reader and Acrobat PDFs not safe until March

Adobe said its Adobe Reader and Acrobat products feature a critical flaw, but it'll be more than a couple of weeks until the problem is patched.

Users have been warned about a new threat from malicious PDF files that won't be fixed until next month, after Adobe's Reader and Acrobat were found to have a critical vulnerability.

In a security bulletin, Adobe warned that the security hole could cause the application to crash and potentially allows an attacker to take control of the affected system. It also said that criminals were already exploiting the flaw.

Advertisement - Article continues below

Adobe are planning to release updates to Adobe Reader and Acrobat to solve the issue, but warned that these wouldn't be available until 11 March. Adobe said that it was already in contact with anti-virus vendors such as McAfee and Symantec about the issue.

Adobe said users should update their virus definitions and be cautious when opening files from an untrusted source.

Graham Cluley, security consultant at Sophos, said on his blog that hackers could deliberately construct a malformed PDF file which could trigger the vulnerability, allowing them to open a backdoor and run malicious code on your computer.

He said: "This would mean that criminals, for instance, spam out a PDF file that would infect your PC, or plant malicious PDF content on a website.

"As PDF files are so widely used on the internet, and regularly exchanged to share this information, there is an obvious concern that hackers may be quick to take advantage of this vulnerability."

Featured Resources

The case for a marketing content hub

Transform your digital marketing to deliver customer expectations

Download now

Fast, flexible and compliant e-signatures for global businesses

Be at the forefront of digital transformation with electronic signatures

Download now

Why CEOS should care about the move to SAP S/4HANA

And how they can accelerate business value

Download now

IT faces new security challenges in the wake of COVID-19

Beat the crisis by learning how to secure your network

Download now
Advertisement

Recommended

Visit/mobile/mobile-security/355889/parachute-introduces-superlock-feature
mobile security

Parachute's Superlock feature keeps your phone recording in an emergency

2 Jun 2020
Visit/security/encryption/355820/k2view-innovates-in-data-management-with-new-encryption-patent
encryption

K2View innovates in data management with new encryption patent

28 May 2020
Visit/software/video-conferencing/355410/zoom-50-adds-256-bit-encryption-and-ui-refresh
video conferencing

Zoom 5.0 adds 256-bit encryption to address security concerns

23 Apr 2020
Visit/security/hacking/355382/whatsapps-flaw-shoulder-surfing
hacking

WhatsApp flaw leaves users open to 'shoulder surfing' attacks

21 Apr 2020

Most Popular

Visit/operating-systems/ios/355935/apple-confirms-serious-bugs-in-ios-135
iOS

Apple confirms serious bugs in iOS 13.5

4 Jun 2020
Visit/mobile/5g/355911/the-uk-pivots-to-japan-for-5g-equipment
5G

The UK looks to Japan and South Korea for 5G equipment

4 Jun 2020
Visit/security/ransomware/355945/new-ransomware-uses-java-to-target-software-organisations
ransomware

Tycoon ransomware discovered using Java image files to target software firms

5 Jun 2020