also @ TechSpot: Rumor: AMD "Piledriver" FX CPU production to begin Q3 2012

Adobe patches Adobe Reader and Acrobat

By

On June 16, 2005, 11:18 AM EST

Adobe has rolled out patches for Adobe Reader 7.0 and 7.0.1, and Adobe Acrobat 7.0 and 7.0.1 in response to security vulnerabilities found in these products. Specifically, there is a security flaw present which is known as the XML External Entity vulnerability. This vulnerability can allow XML scripts to be used to compromise system security. Adobe is recommending that all users upgrade to 7.02.

According to Adobe officials, the vulnerability is within the Adobe Reader control. If an XML script is embedded in JavaScript, it is possible to discover the existence of local files, according to a security advisory from the company. An attacker could then maliciously use the gathered information. But the statement pointed out that the local files can be found only if the attacker knows the complete file names and paths in advance of such an attack.

Related Stories

No tags on this story

Post a new comment

Guest user

To post as an anonymous
user click here
.

Members

If you are a TechSpot member,
please login first.


By signing up you gain complete access to the TechSpot community. Join thousands of computer and technology enthusiasts that contribute and share knowledge in our forum. Post messages, get a private inbox, upload your own photo gallery and more.

Subscribe to TechSpot

Get free exclusive content, learn about new features and tech breaking news.