×

Welcome to the Slashdot Beta site -- learn more here. Use the link in the footer or click here to return to the Classic version of Slashdot.

Thank you!

Before you choose to head back to the Classic look of the site, we'd appreciate it if you share your thoughts on the Beta; your feedback is what drives our ongoing development.

Beta is different and we value you taking the time to try it out. Please take a look at the changes we've made in Beta and  learn more about it. Thanks for reading, and for making the site better!

Google Finds 60 Security Holes in Adobe Reader

sl4shd0rk (755837) writes | about a year and a half ago

Security 2

sl4shd0rk (755837) writes "Upon examining the PDF Engine behind Google Chrome, Google employes Mateusz Jurczyk and Gynvael Coldwind discovered numerous holes. This led them to also test Adobe Acrobat which turned up around 60 holes which could crash the PDF reader; 40 of them being potential attack vectors. The duo notified Adobe, who promised fixes, but as of the lastest updates (Tuesday of this week) for Windows and Macintosh, 16 of the reported flaws are still present (the Linux version has been ignored). To prove it, Mateusz and Gynvael Obfuscated the info and released it saying the unpatched holes could easily be found. The Google employees therefore recommend that users refrain from opening any PDF documents from external sources in Adobe Reader."
Link to Original Source

2 comments

why use adobe's reader in the first place? (0)

Anonymous Coward | about a year and a half ago | (#41024039)

It's a bloated POS? It's over 100MB on disc just to read pdfs.

That seems low (0)

Anonymous Coward | about a year and a half ago | (#41024193)

Only 60? Pfft. I always THOUGHT Google had been slacking off in recent years...

Check for New Comments
Slashdot Account

Need an Account?

Forgot your password?

Don't worry, we never post anything without your permission.

Submission Text Formatting Tips

We support a small subset of HTML, namely these tags:

  • b
  • i
  • p
  • br
  • a
  • ol
  • ul
  • li
  • dl
  • dt
  • dd
  • em
  • strong
  • tt
  • blockquote
  • div
  • quote
  • ecode

"ecode" can be used for code snippets, for example:

<ecode>    while(1) { do_something(); } </ecode>
Sign up for Slashdot Newsletters
Create a Slashdot Account

Loading...