Security Flaw May Compromise Adobe Acrobat PDF Reader
FindLawBy Kevin Fayle,
Security researchers have discovered a flaw in the Adobe Acrobat Reader that may allow malicious computer crackers to initiate attacks on personal computers, according to a report by the Associated Press. The vulnerability allows attackers to take control of the popular software and execute code on the user's computer.
The flaw exists in the plug-in for Mozilla Firefox and Internet Explorer 6.0 or below that allows users to view PDF files within a web browser. By exploiting the vulnerability, intruders can create links to trusted documents that contain malicious JavaScript code. The code runs once the user clicks on the link, and allows the cracker to take control of the Acrobat software and either steal information from the user's computer or install other types of dangerous programs.
|
|
The researchers suggest that users either upgrade to Internet Explorer 7 or change the settings in Firefox so that the browser ceases to use the plug-in, though it remains unclear how pervasive or harmful any attacks based on this flaw may be.
Adobe did not comment on the security breach in the Associated Press report.
Software
© 2007 FindLaw
