Adobe Reader
Adobe's Reader and Acrobat could allow hackers to upload malicious programs

Adobe admits to critical software flaws

Reader and Acrobat vulnerable in IE7 on Windows XP

Matt Chapman

Adobe has admitted that some of its software contains vulnerabilities that could leave computers open to attack, following information published on the Heise Security website.

Following the exposure, Adobe posted information on its Security Bulletins and Advisories page about the vulnerability.

Advertisement

The document and imaging company said that its Adobe Reader and Acrobat software could allow hackers to upload malicious programs onto a user's PC.

The problems are thought to affect only computers running Internet Explorer 7 on Windows XP.

Adobe said that it is working on a fix, but that the necessary updates might not be available until the end of October.

"Having researched and verified the vulnerability, Adobe expects to provide an update to versions 8.1 of Adobe Reader and Acrobat before the end of October that will resolve the issue," said the firm in an official statement.

Adobe added that, in the meantime, it will make information about a workaround available to users to allow them to protect themselves.

"As always, Adobe recommends users exercise scepticism and caution when in receipt of unsolicited email communications requesting user action, such as opening attachments or clicking web links," the company warned.

The issue echoes other critical problems announced earlier this week, which affected the company's Illustrator, GoLive and Pagemaker software.

However, in these cases, Adobe released updates to repair the problems at the same time as announcing the flaws.

A security bulletin will be published on the company's Security Bulletins and Advisories site when a fix for the current problem is ready.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Kaspersky falls through Online Scanner flaw

Security firm unaware of 'highly critical' vulnerability

Hackers eye open source coding tools

Security firm warns of 'cross-build injection vulnerability'

Microsoft rolls out nine fixes

Six 'critical' vulnerabilities patched in October update

Fedora patches old OpenOffice flaw

Two weeks after main sponsor Red Hat plugged the same hole

Related whitepapers

Related jobs

Most watched

Xperia X1

Video Review: Sony Ericsson Xperia X1

First Looks Editor Ian Williams gets hands on with the Sony Ericsson Xperia X1

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

IT white papers

Search white papers

Top categories

Poll

Poll: Summer smartphones

Poll: Summer smartphones

Which smartphone will you be taking to the beach this summer?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

a padlock

Microsoft to plug security holes

Microsoft has given advance warning of a number of security...

Nokia handset

Top 10 articles, 10 July 09

No Nokia Android phone, ActiveX attacks and Google enters into...

Can Google beat Microsoft at its own game?

Google's announcement this week that it plans to step into...

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

Primary Navigation