All the latest UK technology news, reviews and analysis

Avast says six in 10 Adobe Reader users are unpatched

by Shaun Nichols

13 Jul 2011

Be the first to comment

  • Tweet this

More than half of the copies of Adobe Reader currently in use are missing important security updates which could leave users vulnerable to attack, according to security firm Avast.

A survey asking customers which version of the Adobe Reader software tool they had installed found that 60.2 per cent were not running the latest patched version.

Additionally, 20 per cent of the respondents were running a version of the software more than two generations old.

Unpatched systems can be particularly vulnerable to malware because attackers often target known flaws to infect poorly maintained systems with malware.

The danger is elevated with Adobe Reader, which has become a favoured target in recent years owing to the ubiquity of the PDF file format.

"There is a basic assumption that people will automatically update or migrate to the newer version of any program," said Avast chief technical officer Ondrej Vlcek.

"At least with Adobe Reader, this assumption is wrong, and it's exposing users to a wide range of potential threats."

Adobe and Avast recommend that users and administrators keep their software up to date and always apply the latest patches. In the case of many large enterprises, however, installing patches can be anything but trivial.

Paula Musich, a senior analyst for enterprise network and security at Current Analysis, told V3.co.uk that, for many firms, keeping end users patched and updated is much more complex than it sounds.

"Sometimes there is a disconnect between the endpoint administrators and the security staff as far as updates are concerned," she said.

"Security is going to say update all the time, but sometimes patches introduce things that cause other things to break."

The need for testing and deployment processes to avoid those conflicts means that many businesses will inevitably see a gap between an update being released and its deployment to end-user systems.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

39%

0%

10%

51%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Java Developer, Algo Trading, FX, Trading Strategies

Java Deveoper/Programmer/Software Engineer, Algo Trading...

Lead and Senior Developers Wanted

Austin Fraser has the pleasure of appointing a number...

Java Developer - Great move up for a Junior Developer

Austin Fraser has the pleasure of appointing a Java Developer...

Senior J2EE Application Developer

Austin Fraser has the pleasure of appointing a Senior...

To send to more than one email address, simply separate each address with a comma.