Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | US-CERT Cyber Security Alert SA08-043A -- Adobe Reader and Acrobat Vulnerabilities |
|---|---|
| Date: | Tue, 12 Feb 2008 14:37:06 -0500 |
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
National Cyber Alert System
Cyber Security Alert SA08-043A
Adobe Reader and Acrobat Vulnerabilities
Original release date: February 12, 2008
Last revised: --
Source: US-CERT
Systems Affected
* Adobe Reader 8.1.1 and earlier
* Adobe Acrobat Professional, 3D, and Standard 8.1.1 and earlier
Overview
Adobe Reader and Adobe Acrobat are affected by multiple
vulnerabilities. Adobe has released Security advisory APSA08-01 to
address these vulnerabilities, the most serious of which may allow
a remote attacker to take control of your computer.
Solution
Upgrade
Upgrade to Adobe Reader and Adobe Acrobat 8.1.2 as described in
Adobe Security advisory APSA08-01.
Description
Adobe Reader and Acrobat products are affected by multiple
vulnerabilities. These vulnerabilities could allow an attacker to
run malicious programs on your computer, crash your computer, or
access your data. An attacker could exploit some of these
vulnerabilities by convincing you to visit a web site that links to
a specially crafted Portable Document Format (PDF) file.
At least one of these vulnerabilities is being actively exploited.
The SANS Internet Storm Center Handler's Diary contains more
information.
For more technical information, see US-CERT Technical Alert
TA08-043A.
References
* US-CERT Technical Cyber Security Alert TA08-043A -
<http://www.us-cert.gov/cas/techalerts/TA08-043A.html>
* US-CERT Vulnerability Notes for Adobe Security advisory APSA08-01
- <http://www.kb.cert.org/vuls/byid?searchview&query=APSA08-01>
* Securing Your Web Browser -
<http://www.us-cert.gov/reading_room/securing_browser/>
____________________________________________________________________
The most recent version of this document can be found at:
<http://www.us-cert.gov/cas/techalerts/TA08-043A.html>
____________________________________________________________________
Feedback can be directed to US-CERT Technical Staff. Please send
email to <cert@cert.org> with "TA08-043A Feedback VU#666281" in the
subject.
____________________________________________________________________
For instructions on subscribing to or unsubscribing from this
mailing list, visit <http://www.us-cert.gov/cas/signup.html>.
____________________________________________________________________
Produced 2008 by US-CERT, a government organization.
Terms of use:
<http://www.us-cert.gov/legal.html>
____________________________________________________________________
Produced 2008 by US-CERT, a government organization. Terms of use
Revision History
February 12, 2008: Initial release
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
iQEVAwUBR7H01fRFkHkM87XOAQJSBQgAku94iFSOqKih9qPZVXvpsCmluIwJQqOi
DAzi5Ym8Nvwfq7UB6Btu3NV3BRh4wzbTF3MIgrv6iscXrE6gLxdDJijOhWiIg7H5
w2Gx58us7bC8wKye4BHj4eUVEkD3jAPBLZT1Y+OIYSb/j9xC7DxAeq9zp8PdMSSt
PREhKhFF1RPWV4EcMdPiFRlXHHVtp4Ihu2XjxjoAmQtSVJMk9P2ZruzAIM2+JDkO
2ToVafGuokYcuDnGu6BQrOny7s1wJa8LySOcRta61ctJSkw9x6XBGTb6D4yIEwGU
MLoKnlBNLIuvt0Zsln7WePWp8etrdubZZSg42L3L6kAZxXkdwHYGTQ==
=DSms
-----END PGP SIGNATURE-----
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | US-CERT Cyber Security Alert SA08-043B -- Apple Updates for Multiple Vulnerabilities, US-CERT Alerts |
|---|---|
| Next by Date: | US-CERT Cyber Security Alert SA08-043C -- Microsoft Updates for Multiple Vulnerabilities, US-CERT Alerts |
| Previous by Thread: | US-CERT Cyber Security Alert SA08-043B -- Apple Updates for Multiple Vulnerabilities, US-CERT Alerts |
| Next by Thread: | US-CERT Cyber Security Alert SA08-043C -- Microsoft Updates for Multiple Vulnerabilities, US-CERT Alerts |
| Indexes: | [Date] [Thread] [Top] [All Lists] |