Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security US-CERT-Alerts
[Top] [All Lists]

US-CERT Cyber Security Alert SA08-043A -- Adobe Reader and Acrobat Vulne

Subject: US-CERT Cyber Security Alert SA08-043A -- Adobe Reader and Acrobat Vulnerabilities
Date: Tue, 12 Feb 2008 14:37:06 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

    National Cyber Alert System

   Cyber Security Alert SA08-043A


Adobe Reader and Acrobat Vulnerabilities

   Original release date: February 12, 2008
   Last revised: --
   Source: US-CERT


Systems Affected

     * Adobe Reader 8.1.1 and earlier
     * Adobe Acrobat Professional, 3D, and Standard 8.1.1 and earlier


Overview

     Adobe   Reader   and   Adobe   Acrobat  are  affected  by  multiple
     vulnerabilities.  Adobe has released Security advisory APSA08-01 to
     address  these vulnerabilities, the most serious of which may allow
     a remote attacker to take control of your computer.


Solution

Upgrade

     Upgrade  to  Adobe  Reader  and Adobe Acrobat 8.1.2 as described in
     Adobe Security advisory APSA08-01.


Description

     Adobe   Reader  and  Acrobat  products  are  affected  by  multiple
     vulnerabilities.  These  vulnerabilities could allow an attacker to
     run  malicious  programs  on your computer, crash your computer, or
     access   your  data.  An  attacker  could  exploit  some  of  these
     vulnerabilities by convincing you to visit a web site that links to
     a specially crafted Portable Document Format (PDF) file.

     At  least one of these vulnerabilities is being actively exploited.
     The  SANS  Internet  Storm  Center  Handler's  Diary  contains more
     information.

     For   more  technical  information,  see  US-CERT  Technical  Alert
     TA08-043A.


References

     * US-CERT    Technical    Cyber    Security    Alert   TA08-043A   -
       <http://www.us-cert.gov/cas/techalerts/TA08-043A.html>

     * US-CERT  Vulnerability Notes for Adobe Security advisory APSA08-01
       - <http://www.kb.cert.org/vuls/byid?searchview&query=APSA08-01>

     * Securing Your Web Browser -
       <http://www.us-cert.gov/reading_room/securing_browser/>
 ____________________________________________________________________

   The most recent version of this document can be found at:

     <http://www.us-cert.gov/cas/techalerts/TA08-043A.html>
 ____________________________________________________________________

   Feedback can be directed to US-CERT Technical Staff. Please send
   email to <cert@cert.org> with "TA08-043A Feedback VU#666281" in the
   subject.
 ____________________________________________________________________

   For instructions on subscribing to or unsubscribing from this
   mailing list, visit <http://www.us-cert.gov/cas/signup.html>.
 ____________________________________________________________________

   Produced 2008 by US-CERT, a government organization.

   Terms of use:

     <http://www.us-cert.gov/legal.html>
 ____________________________________________________________________

   Produced 2008 by US-CERT, a government organization. Terms of use

   Revision History

   February 12, 2008: Initial release
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iQEVAwUBR7H01fRFkHkM87XOAQJSBQgAku94iFSOqKih9qPZVXvpsCmluIwJQqOi
DAzi5Ym8Nvwfq7UB6Btu3NV3BRh4wzbTF3MIgrv6iscXrE6gLxdDJijOhWiIg7H5
w2Gx58us7bC8wKye4BHj4eUVEkD3jAPBLZT1Y+OIYSb/j9xC7DxAeq9zp8PdMSSt
PREhKhFF1RPWV4EcMdPiFRlXHHVtp4Ihu2XjxjoAmQtSVJMk9P2ZruzAIM2+JDkO
2ToVafGuokYcuDnGu6BQrOny7s1wJa8LySOcRta61ctJSkw9x6XBGTb6D4yIEwGU
MLoKnlBNLIuvt0Zsln7WePWp8etrdubZZSg42L3L6kAZxXkdwHYGTQ==
=DSms
-----END PGP SIGNATURE-----

<Prev in Thread] Current Thread [Next in Thread>
  • US-CERT Cyber Security Alert SA08-043A -- Adobe Reader and Acrobat Vulnerabilities, US-CERT Alerts <=