August 17, 2005 3:48 PM PDT

Adobe warns of Reader, Acrobat bug

Related Stories

Adobe fixes Reader, Acrobat for Mac OS

June 28, 2005
A security flaw in Adobe Systems' popular Acrobat and Reader applications could be used to shut down or hijack vulnerable PCs.

By crafting a malicious PDF file, a remote attacker could cause the applications to crash or possibly commandeer the target computer, Adobe said in a security advisory published on Tuesday. The San Jose, Calif.-based software maker has updates available to fix the problem.

The security issue affects Adobe Reader for Windows, Mac OS, Linux and Solaris and Adobe Acrobat for Windows and Mac OS, Adobe said. Security monitoring company Secunia rates the issue "highly critical," according to an advisory posted Tuesday.

The vulnerability is a so-called buffer overflow within a core application plug-in that is part of Adobe Acrobat and Adobe Reader, the company said. Adobe itself discovered the error, according to the advisory.

Buffer overflows are a commonly exploited security problem. They occur when a program allows data to be written beyond the allocated end of a buffer in memory. A computer can be made to execute potentially malicious code by feeding in extra data that is designed to flood over the buffer.

3 comments

Join the conversation!
Add your comment (Log in or register)
Christ, Not Again
Like, every 2 months Adobe issues another security patch. Each patch purports to fix a buffer overflow problem. Can't they solve this once and for all?

I've already got enough patches to keep up with, I need less not more. So I'm trying out an alternative PDF reader - Foxit (<a class="jive-link-external" href="http://www.foxitsoftware.com/pdf/rd_intro.php" target="_newWindow">http://www.foxitsoftware.com/pdf/rd_intro.php</a>). So far, the few PDF's I've viewed using Foxit render as good or better than Adobe 7. And compare the codebase:

Adobe Reader 7
Disk space: 65 megabytes
Memory usage: 26,604K (42K doc size)

Foxit:
Disk space: 2.5 megabytes
Memory usage: 13,472K (42K doc size)
Posted by Stating (870 comments )
Reply Link Flag
Is this some trend or fad set for 2005?
Everybody wants to be in! I thought this is Microsoft's brand... :-D
Posted by Mendz (520 comments )
Reply Link Flag
No worries, mate....
.... No Adobe Acrobat or Reader in my computers. And I've just
about eliminated the need for the rest of Adobe's products...........
Posted by Earl Benser (4342 comments )
Reply Link Flag
 

Join the conversation

Add your comment

The posting of advertisements, profanity, or personal attacks is prohibited. Click here to review our Terms of Use.

Inside CNET News

1-2 of 12

Scroll Left Scroll Right

What's Hot

Discussions

Shared

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

Markets

Market news, charts, SEC filings, and more

Related quotes

Adobe Systems (-1.35%) -0.44 32.21
Dow Jones Industrials (-0.69%) -89.23 12,801.23
S&P 500 (-0.69%) -9.31 1,342.64
NASDAQ (-0.80%) -23.35 2,903.88
CNET TECH (-0.58%) -11.91 2,032.01
  Symbol Lookup