PDA

View Full Version : [HIB]Adobe Patch Fail to Fix Critical Flaw



newsbot
14-07-2010, 02:22 PM
According to a Vietnam-based security firm 'Bach Khoa Internetwork Security' (BKIS), the out-of-cycle security patch for Adobe Acrobat and Reader released on June 29, 2010 hasn't been able to fix a problem that allows hackers execute malicious code.The update in version 9.3.3 for PDF applications was developed to plug several holes. One of them is related to the Launch message window, which can encourage an end-user to view an .exe file. Didier Stevens, a security researcher from Belgian who informed Adobe about the security hole in March 2010, blogged emphatically soon after the patch's publication that experts had repaired the problem.However, BKIS claims that the update hasn't been able to fully fix the hole that the Vietnamese antivirus firm stated viruses were exploiting during online attacks. Le Manh Tung, a senior security researcher at BKIS, wrote on the company's blog that it was still possible to circumvent the fix, as reported by ZDNet on July 2, 2010.

**Hidden Content: Check the thread to see hidden data.**