[MacTUG] Adobe warns of new Reader, Acrobat vulnerability | MacNN

Marlon A. Griffith m3griffi at engmail.uwaterloo.ca
Mon Dec 21 09:47:30 EST 2009

Security experts suggest that the exploit is connected to Adobe's
handling of JavaScript code, and that the simplest way to block an
attack is to disable JavaScript within Reader and Acrobat. The action is
in fact recommended as a rule, given that a number of other attacks have
also been directed through JavaScript. People can alternately avoid
problems by only downloading PDF files from trusted sources.

Macs are said to be immune from takeovers at present, but will still
crash when opening a malicious PDF. Windows Vista and 7 can likewise
limit damage through Data Execution Prevention.


More information about the MacTUG mailing list