Graphic Design Blog > Adobe Offering Insecure Adobe Reader Version For Download, Beware

[gHacks technology news, Software And Internet Tips For The Geek In You] This opens a can of worms and raises a question, how are Adobe Reader downloaders supposed to know that the version offered is not the latest? They apparently do not get that information on the Adobe Reader download page, nor are they informed about the insecure version on startup of the pdf reader.

Previous [Previous] A Million Chimpanzees: GIMP 2.6.9 Available for Linux..sort...

Next [Next] Early Adobe Air download surfaces | Android Central...

Some related posts from Technorati and Google.

[Techkicker.com] Adobe Offering Insecure Adobe Reader Version For Download, Beware ...: Adobe just recently released updates to their pdf reader Adobe Reader, raising its version to 9.3.3.

[The Download Blog: Software tips, news, and opinions from Download.com editors] Adobe Reader, Acrobat updates fix 17 critical holes | InSecurity ...: "Critical vulnerabilities have been identified in Adobe Reader 9.3.2 (and earlier versions) for Windows, Macintosh and UNIX, Adobe Acrobat 9.3.2 (and earlier versions) for Windows and Macintosh, and Adobe Reader 8.2.2 (and earlier versions) and Adobe Acrobat 8.2.2 (and earlier versions) for Windows and Macintosh. These vulnerabilities, including CVE-2010-1297 referenced in Security Advisory APSA10-01, could cause the application to crash and could potentially allow an attacker to take control of the affected system.

[gHacks technology news, Software And Internet Tips For The Geek In You] Adobe Still Offering Insecure Adobe Reader Version: It is quite possible the Java interface is now OK, which would explain Adobe’s rush to issue Adobe Reader 9.3.1 prior to their regular update cycle (believe it is monthly) because it would make them look better, if I am correct in my thinking. By the way, Adobe did a quick re-issue of Flash Player 100452 at the same time, possibly for a similar reason (the Flash Player has the same number as one issued a few days earlier, but the file size is different).

[The Download Blog: Software tips, news, and opinions from Download.com editors] Adobe Reader, Acrobat updates fix 17 critical holes: "Critical vulnerabilities have been identified in Adobe Reader 9.3.2 (and earlier versions) for Windows, Macintosh and UNIX, Adobe Acrobat 9.3.2 (and earlier versions) for Windows and Macintosh, and Adobe Reader 8.2.2 (and earlier versions) and Adobe Acrobat 8.2.2 (and earlier versions) for Windows and Macintosh. These vulnerabilities, including CVE-2010-1297 referenced in Security Advisory APSA10-01, could cause the application to crash and could potentially allow an attacker to take control of the affected system.

[John Nack on Adobe] John Nack on Adobe : YouTube talks Flash and HTML5: The really annoying thing though is that Flash only announced support for VP8, not WebM. I was hoping they would support the whole WebM format so that I could Flash as a single fallback mechanism for HTML5 content.

[Create Free Blog - Atblogs] adobe software issues: Android: Flash's arrival on Android was last week's notable news, but slipped in under the radar was the free release of an Adobe Reader for Google-powered smartphones. It offers to read PDFs with pinch-style zooming, and it does just that.

[CNET News.com] Flash arrives in Google's Chrome browser | Deep Tech - CNET News: I'm all for development and advancement in personal computing - but blaming Flash for everything is just a poor excuse - and the removal of flash completely from the current web experience makes it poorer, i'm sure many would agree. You should consider too that many people have work and provide for their families by developing Flash in many forms - and this current flame war against it from Mr.Jobs isn't really just about future advancement and stability - but also a major way to dominate and reap more profits from their own form of advertising, without their former reliance on Google.

[Tech Reviews] Adobe to fix critical Reader hole next week: Adobe will release updates for Reader and Acrobat on Tuesday that will fix critical security issues, including plugging a hole that could be used to take control of computers and which has been exploited in the wild, the company said on Thursday.

[Oem Cheap Software] adobe software issues: A security study last February by security software provider Webroot of its own SMB customers revealed that nearly a quarter believe they are susceptible to cyber-attacks on account of insecure plug-ins including Adobe Reader. That feeling is compounded by raw data from Mozilla providing evidence that as many as half of all Firefox browser crashes are triggered by either Adobe Flash or Adobe Reader —

[Darknet - The Darkside] Google Chrome Set To Follow Firefox In Blocking Out-of-date Plug ...: The announcement comes a few months after anti-virus maker F-Secure said Adobe’s Reader application replaced Microsoft Word as the program that’s most often exploited in targeted malware campaigns, like the one that Google disclosed in January that exposed sensitive intellectual property. F-Secure said the increase is “primarily because there has been more vulnerabilities in Adobe Acrobat/Reader than in the Microsoft Office applications.”

[Revelations From An Unwashed Brain] Chrome Adds PDF Viewer - Will Others Follow? « Revelations From An ...: In what I believe is a brilliant move, the newest developer builds of Chrome include a PDF viewer, forsaking the plug-in model, and the possibility of system compromise through the use of an older and possibly (probably?) insecure Adobe Reader on the user’s machine.

[bit-tech.net Feed] Adobe warns of Flash, Acrobat attack | bit-tech.net: That's what I meant by 'so-to-speak', there is a vulnerability in Flash but it's dependent on other more important conditions before it can be properly exploited, it's entirely to do with the integration of Flash and Acrobat and the way that Acrobat handles Flash files. From what Adobe have said, there seems to be absolutely no problem with Flash applets in any web browser (with this specific exploit, anyway).

Reflected tags on Technorati: Blog, ,