Adobe - Zero day vulnerability

Started by Eric the Red, March 14, 2011, 08:46:05 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Eric the Red

Adobe have released details of a vulnerability that is currently being exploited and for which there is currently no fix:

QuoteThis vulnerability (CVE-2011-0609) could cause a crash and potentially allow an attacker to take control of the affected system. There are reports that this vulnerability is being exploited in the wild in targeted attacks via a Flash (.swf) file embedded in a Microsoft Excel (.xls) file delivered as an email attachment. At this time, Adobe is not aware of attacks targeting Adobe Reader and Acrobat. Adobe Reader X Protected Mode mitigations would prevent an exploit of this kind from executing.

Please refer to the advisory for full details

http://www.adobe.com/support/security/advisories/apsa11-01.html
"The time to start running is around about the "e" in "Hey, you!" "