Site Archives Adobe

Adobe Patch Released for Acrobat and Reader

Posted on June 10th, 2009

GSA Reference Number: AD090610-01

Simply Put: Adobe has released a patch for multiple critical vulnerabilities affecting its Acrobat products.  This patch fixes multiple vulnerabilities regarding the Adobe products for both Windows and Mac operating systems.  The patch is available through the software update tool or by visiting the Adobe Security Bulletin linked below.  This is Adobe’s first patch release using its new quarterly release cycle.

Adobe Releases Patch for Critical Acrobat Vulnerability

Posted on May 13th, 2009

GSA Reference Number: AD090513-01

Simply Put: Adobe has released a patch for the critical vulnerability affecting its Acrobat products.  This vulnerability was previously discussed in Gladiator Advisory AD090430-01 on April 30th, stating that all versions of Adobe Reader and Adobe Acrobat, on all operating systems, are affected by a Critical JavaScript Vulnerability.

Critical Adobe Reader And Acrobat JavaScript Vulnerability

Posted on April 30th, 2009

GSA Reference Number: AD090430-01

Simply Put: All versions of Adobe Reader and Adobe Acrobat, on all operating systems, are affected by a Critical JavaScript Vulnerability. Currently, Adobe has not released a patch for this issue. Gladiator recommends disabling JavaScript in Adobe Reader and Adobe Acrobat to help mitigate the issue.

Critical Adobe Patch Released

Posted on March 11th, 2009

GSA Reference Number: AD090311-01

Replaces GSA Reference Number: AD090220-01

Simply Put: Adobe Acrobat 9 and Reader 9 and earlier versions contain a critical vulnerability that allows arbitrary code execution.  This issue is currently being exploited.  Adobe has released a patch for Acrobat 9 and Reader 9.  However, earlier versions of the product remain unpatched.  Gladiator recommends upgrading all Adobe installations to version 9.1 if possible.

New Adobe Acrobat and Reader Vulnerability

Posted on February 20th, 2009

GSA Reference Number: AD090220-01

Simply Put: Adobe Acrobat 9 and Reader 9 and earlier versions contain an unpatched critical vulnerability that allows arbitrary code execution.  Adobe has released an advisory on this issue, but a patch will not be released until March 11th.  A workaround has been published that will prevent code execution, but the application will still crash.

Adobe Flash Player Zero-Day Vulnerability

Posted on May 28th, 2008

GSA Reference Number: AD080528-01

Simply Put: Adobe’s Flash Player has a new, zero-day vulnerability. Zero-day means the attack is being actively exploited on the internet and there is not a patch available. Adobe Flash Player is used to display flash files (.swf) in web pages – these files are normally seen as movies or animations. The vulnerability can be used to run malicious code on a user’s machine without notification or permission. Gladiator feels this issue is extremely critical.