Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: PDF exploit affects Adobe Reader 11 and earlier  (Read 9622 times)

0 Members and 1 Guest are viewing this topic.

Geek-9pm

    Topic Starter

    Mastermind
  • Geek After Dark
  • Thanked: 1026
    • Gekk9pm bnlog
  • Certifications: List
  • Computer: Specs
  • Experience: Expert
  • OS: Windows 10
PDF exploit affects Adobe Reader 11 and earlier
« on: February 17, 2013, 11:38:51 AM »
Zero-day PDF exploit affects Adobe Reader 11 and earlier versions, researchers say
Adobe is investigating the report, but has yet to confirm that the exploit bypasses the sandbox protection in Adobe Reader 10 and 11
By Lucian Constantin
February 13, 2013 09:57 AM ET

IDG News Service - Researchers from security firm FireEye claim that attackers are actively using a remote code execution exploit that works against the latest versions of Adobe Reader 9, 10 and 11.

"Today, we identified that a PDF zero-day [vulnerability] is being exploited in the wild, and we observed successful exploitation on the latest Adobe PDF Reader 9.5.3, 10.1.5, and 11.0.1," the FireEye researchers said late Tuesday in a blog post.

The exploit drops and loads two DLL files on the system. One file displays a bogus error message and opens a PDF document that's used as a decoy, the FireEye researchers said.

Remote code execution exploits regularly cause the targeted programs to crash. In this context, the fake error message and second document are most likely used to trick users into believing that the crash was the result of a simple malfunction and the program recovered successfully.

Meanwhile, the second DLL installs a malicious component that calls back to a remote domain, the FireEye researchers said.

It's not clear how the PDF exploit is being delivered in the first place -- via email or over the Web -- or who were the targets of the attacks using it. FireEye did not immediately respond to a request for additional information sent Wednesday.
....
http://www.computerworld.com/s/article/9236751/Zero_day_PDF_exploit_affects_Adobe_Reader_11_and_earlier_versions_researchers_say

patio

  • Moderator


  • Genius
  • Maud' Dib
  • Thanked: 1769
    • Yes
  • Experience: Beginner
  • OS: Windows 7
Re: PDF exploit affects Adobe Reader 11 and earlier
« Reply #1 on: February 17, 2013, 02:55:14 PM »
One word...Foxit.
" Anyone who goes to a psychiatrist should have his head examined. "

Helpmeh



    Guru

  • Roar.
  • Thanked: 123
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 8
Re: PDF exploit affects Adobe Reader 11 and earlier
« Reply #2 on: February 18, 2013, 12:30:45 AM »
One word...Foxit.
I find it funny that Firefox won't let me open PDFs with foxit unless I click through a warning. I don't remember them ever doing that when I had adobe.
Where's MagicSpeed?
Quote from: 'matt'
He's playing a game called IRL. Great graphics, *censored* gameplay.

BC_Programmer


    Mastermind
  • Typing is no substitute for thinking.
  • Thanked: 1140
    • Yes
    • Yes
    • BC-Programming.com
  • Certifications: List
  • Computer: Specs
  • Experience: Beginner
  • OS: Windows 11
Re: PDF exploit affects Adobe Reader 11 and earlier
« Reply #3 on: February 18, 2013, 12:45:38 AM »
I find it funny that Firefox won't let me open PDFs with foxit unless I click through a warning. I don't remember them ever doing that when I had adobe.

I've NEVER had such a "warning".
I was trying to dereference Null Pointers before it was cool.

patio

  • Moderator


  • Genius
  • Maud' Dib
  • Thanked: 1769
    • Yes
  • Experience: Beginner
  • OS: Windows 7
Re: PDF exploit affects Adobe Reader 11 and earlier
« Reply #4 on: February 18, 2013, 07:36:57 AM »
Neither have i...
" Anyone who goes to a psychiatrist should have his head examined. "

soybean



    Genius
  • The first soybean ever to learn the computer.
  • Thanked: 469
  • Computer: Specs
  • Experience: Experienced
  • OS: Windows 10
Re: PDF exploit affects Adobe Reader 11 and earlier
« Reply #5 on: February 18, 2013, 10:14:20 AM »
Me either.   Exactly what does the warning say?

Helpmeh



    Guru

  • Roar.
  • Thanked: 123
    • Yes
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 8
Re: PDF exploit affects Adobe Reader 11 and earlier
« Reply #6 on: February 18, 2013, 08:37:57 PM »
Now that you ask, I am completely unable to get the warning. Very odd indeed.
Where's MagicSpeed?
Quote from: 'matt'
He's playing a game called IRL. Great graphics, *censored* gameplay.