Adobe Systems released a patch today to plug a security hole affecting Adobe Reader that is on the radar of attackers.
The update actually fixes two vulnerabilities, though only one is known to be under attack. That vulnerability – a flaw affecting Adobe Reader 9.4.1 and earlier 9.x versions for Windows, Unix and Mac OS X – had been targeted by attackers for the past few weeks.
The vulnerability, CVE-2010-3654, could be used to cause a crash and potentially allow an attacker to take control of the affected system, Adobe said in its advisory.
The other issue fixed in the update is a denial-of-service bug. An Adobe spokesperson said the company has not seen any exploit in the wild targeting the bug yet. However, proof of concept code was posted on the Full Disclosure mailing list.
“Adobe recommends users of Adobe Reader 9.4 and earlier versions for Windows and Macintosh update to Adobe Reader 9.4.1, available now,” the company said in the advisory. In addition, “Adobe recommends users of Adobe Reader 9.4 and earlier versions for Unix update to Adobe Reader 9.4.1, expected to be available on November 30, 2010 … [and] users of Adobe Acrobat 9.4 and earlier 9.x versions for Windows and Macintosh update to Adobe Acrobat 9.4.1.”
With China tariff set at 145 percent, Amazon CEO admits third party sellers may pass…
Hundreds of staff within the Android, Chrome and Pixel teams at Alphabet's Google are reportedly…
After weeks of tariff chaos, China hits back at Donald Trump and raises tariffs on…
Executive at Chinese owned Swedish EV maker Polestar admits targetting fed up Tesla owners with…
Escalation of feud between Sam Altman and Elon Musk, after OpenAI confirms it is now…
Report from International Energy Agency (IEA) warns AI is set to drive surging electricity demand…