28 Oct 2010
Adobe has warned of attacks on a zero-day flaw in its Reader, Acrobat and Flash applications.
The company has not released a patch, but has issued a workaround for IT administrators to ward off intruders. Danish security analysts Secunia rated the flaw as extremely critical.
Adobe said in a security advisory that the vulnerability could cause a crash and potentially allow an attacker to take control of the affected system.
"There are reports that this vulnerability is being actively exploited in the wild against Adobe Reader and Acrobat 9.x. Adobe is not currently aware of attacks targeting Adobe Flash Player," the firm said.
All versions of Flash on Windows, Mac, Linux and Android are vulnerable, which also affects the Authplay component of Reader and Acrobat 9.x that renders Flash in PDFs.
A full patch for Reader and Acrobat is expected by 15 November and the Flash flaw will be fixed a week earlier, according to Adobe.
Adobe released a fix yesterday for a previous flaw in Shockwave for Windows and Macintosh.
Latest stories from Security
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
TFL director of Games transport Mark Evers discusses how the public transport network is preparing for this summer's event
Connect with V3.co.uk
The wrong printers, for the wrong tasks on the wrong contracts
Who leads the BI pack and who should we be watching out for?
A client, a major financial services organisation, is...
Sharepoint Administrator, Sharepoint 2010, Sharepoint...
Proteus Europe, operating as an employment business...
Salesforce.com Senior Consultants and Leads Salesforce...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?