Multiple vulnerabilities have been identified in Adobe Reader, which could be exploited by attackers to bypass security restrictions or take complete control of an affected system [...]
Affected Products
Adobe Reader version 8.1.1 and prior
Adobe Acrobat Professional version 8.1.1 and prior
Adobe Acrobat 3D version 8.1.1 and prior
Adobe Acrobat Standard version 8.1.1 and prior
Credits
Vulnerabilities reported by Tavis Ormandy, Will Drewry (Google Security Team), cocoruder (Fortinet Security Research Team), Greg MacManus (iDefense Labs), Paul Craig (Security-Assessment) and Zero Day Initiative.
ChangeLog
2008-02-06 : Initial release
2008-02-07 : Updated Advisory
2008-02-09 : Updated References
2008-05-07 : Updated Solution
Vulnerability Management
Subscribe to FrSIRT VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@frsirt.com.