CommunityDispatch.com
Community News and Information

Contact Us | Submit News |About Us| Subscribe | Home Page
Custom Search


search
For More Current News, Click Here

Search








Cyber Alert
RSS Feed RSS Feed
Last Updated: Jul 11, 2008 - 11:26:39 AM

                                                                                                                              

Cyber Alert: Adobe Updates for Microsoft Windows Vulnerability


By U.S. CERT, Department of Homeland Security


Oct 24, 2007 - 7:34:16 PM


 

 

 

 

Cyber Security Alert SA07-297B archive

Adobe Updates for Microsoft Windows Vulnerability

Original release date: October 24, 2007
Last revised: --
Source: US-CERT

Systems Affected

Microsoft Windows XP and Windows Server 2003 systems with Internet Explorer 7 and any of the following Adobe products:
  • Adobe Reader 8.1 and earlier
  • Adobe Acrobat Professional, 3D, and Standard 8.1 and earlier
  • Adobe Reader 7.0.9 and earlier
  • Adobe Acrobat Professional, 3D, Standard, and Elements 7.0.9 and earlier

Overview

Microsoft Windows XP and Server 2003 systems with Internet Explorer 7 contain a vulnerability that could allow an attacker to take control of your computer by convincing you to open a malicious PDF document. Public reports indicate that this vulnerability is being actively exploited.


Solution

Apply an update

Adobe has released Adobe Reader 8.1.1 and Adobe Acrobat 8.1.1 to address this issue. Please see Adobe Security Bulletin APSB07-18 for details.

Description

Microsoft Windows XP and Server 2003 systems with Internet Explorer 7 installed contain a vulnerability in the way Windows determines the appropriate program to handle data specified in a Uniform Resource Identifier (URI). An attacker can exploit this vulnerability by convincing you to open a specially crafted PDF document. The attacker could gain access your computer, install and run malicious software on your computer, or cause it to crash.

More technical information is available in US-CERT Technical Cyber Security Alert TA07-297A and Vulnerability Note VU#403150.


References


Feedback can be directed to US-CERT.

 



Cyber Alert
Latest Headlines


Dialing for (Your) Dollars: Beware of Phone and Fax Fraud
FBI Alert: Hit Man E-Mail Scam Persists
Money Making Secrets Misled Consumers: FTC Settles Charges
Microsoft Product Alert: Microsoft Updates for Multiple Vulnerabilities
Domain Registrations Scam: FTC Halts Cross Border Con Artists
FBI Warns Cyber Criminals Targeting Users of EPPI Cards
FBI Warns Cyber Criminals Targeting Users of EPPICards
NASA Employee Suspended Blogging on the Clock

security, windows update, Cyber Security Assembly