Full Disclosure mailing list archives
ACROS Blog: Adobe Reader X (10.1.2) msiexec.exe Planting
From: "ACROS Security Lists" <lists () acros si>
Date: Wed, 11 Apr 2012 12:17:27 +0200
Adobe issued an update for Adobe Reader X (new version is 10.1.3), which, among other issues, fixes an outside-the-sandbox msiexec.exe EXE planting vulnerability we reported to them earlier this year. This article explains the vulnerability and how it could have been exploited. http://blog.acrossecurity.com/2012/04/adobe-reader-x-1012-msiexecexe-planting.html or http://bit.ly/HyXYAX Enjoy the reading! Mitja Kolsek, CEO / @mkolsek ACROS, d.o.o. Makedonska ulica 113, SI - 2000 Maribor, Slovenia Tel +386.2.3000.280 Fax +386.2.3000.282 Web http://www.acrossecurity.com Blg http://blog.acrossecurity.com Twt @acrossecurity ACROS Security: Finding Your Digital Vulnerabilities Before Others Do _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- ACROS Blog: Adobe Reader X (10.1.2) msiexec.exe Planting ACROS Security Lists (Apr 11)