• On TV.com: Julie is HOT (and so is TV in a FLASH)
June 24, 2008 9:52 AM PDT

Adobe releases security updates for Reader, Acrobat

by Robert Vamosi

On Monday, Adobe released a security update for a serious vulnerability within Reader and Acrobat. The vulnerability described in CVE-2008-2641 is being circulated on the Internet. Adobe says if exploited the vulnerability could crash applications and could allow an attacker to take control of the affected system.

The update affects Adobe Reader 8.0 through 8.1.2, Adobe Reader 7.0.9 and earlier, Adobe Acrobat Professional, 3D and Standard 8.0 through 8.1.2, Adobe Acrobat Professional, 3D and Standard 7.0.9 and earlier. It does not affect Adobe Reader 7.1.0 and Acrobat 7.1.0.

As CNET's resident security expert, Robert Vamosi has been interviewed on the BBC, CNN, MSNBC, and other outlets to share his knowledge about the latest online threats and to offer advice on personal and corporate security. Listen to his podcast at securitybites.cnet.com or e-mail Robert with your questions and comments.
advertisement
Click here!
Recent posts from Defense in Depth
Window Snyder to leave Mozilla
How to handle ID fraud's youngest victims
Is white listing going mainstream?
How Live OneCare changed the antivirus landscape
Express Scripts clients threatened with extortion
Study: DDoS attacks threaten ISP infrastructure
Security expert talks Russian gangs, botnets
Extortion used in Express Scripts database breach
Add a Comment (Log in or register) (3 Comments)
  • prev
  • 1
  • next
by hays33d June 24, 2008 11:58 AM PDT
Anyone know what files or registry keys this actually changes? The two files I gauge whether Reader has been updated doing an inventory is the exe and the main dll, acrord32.dll. Both of those files remained unchanged after this patch.

Thanks.

PS: Adobe's web site is useless as usual.
Reply to this comment
by mhinnewyork June 29, 2008 8:29 AM PDT
I blogged about how you can verify that the patch was installed. This patch is unusual in that, if you start with version 8.1.2 and apply the patch, a standard Help -> About still shows version 8.1.2. According to Adobe you have to do Help -> About Adobe Plug-Ins -> Comments and look for a date on the API file of 6/7/2008. For more see
http://news.cnet.com/8301-13554_3-9979638-33.html
Michael Horowitz
Reply to this comment
by nedra 234 August 3, 2008 12:25 PM PDT
Do You Think!!!!
Reply to this comment
(3 Comments)
  • prev
  • 1
  • next
advertisement

After 5 years, Firefox faces new challenges

Mozilla helped reshape the Web since releasing Firefox 1.0 five years ago. Now it's got a reawakened Microsoft and Google Chrome to reckon with.

There's a map for that: GPS or smartphone?

Almost every handset comes with mapping software these days, but standalone GPS devices are becoming more affordable than ever.

About Defense in Depth

Covering computer viruses and computer crime, Robert Vamosi goes beyond the hype to provide you with expert interviews of the top security researchers, as well as offering the hands-on, nontechnical advice you'll need to stay safe online.

Add this feed to your online news reader

Defense in Depth topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right