Skip to main content

Hackers exploiting Reader flaw in Windows

posted onDecember 7, 2011
by l33tdawg

Adobe is patching a critical zero-day vulnerability in Adobe Reader and Acrobat that could enable an attacker to take control of an affected machine.

The vulnerability exists in Adobe Reader X (10.1.1) and earlier versions for Windows and Macintosh, Adobe Reader 9.4.6, and earlier 9.x versions for UNIX, and Adobe Acrobat X (10.1.1) and earlier versions for Windows and Macintosh, Adobe explained in a security advisory.

The U3D memory vulnerability (CVE-2011-2462) could cause a crash and potentially allow an attacker to take control of the system. There are reports that this vulnerability is being actively exploited in limited, targeted attacks in the wild against Adobe Reader 9.x on Windows, Adobe warned. Adobe is taking a multistage approach to fixing the vulnerability. First, the company is planning to release an out-of-cycle security update for the software currently being exploited in the wild, that is, Adobe Reader 9.x and Acrobat 9.x for Windows. That will happen no later than the week of December 12.

Source

Tags

Security Hackers Microsoft Adobe

You May Also Like

Recent News

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th