funsec mailing list archives

Adobe 7.0.9 Released to Address XSS Vulnerability


From: "Fergie" <fergdawg () netzero net>
Date: Wed, 10 Jan 2007 06:59:58 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I'm sure some of you have already seen this, but...

Via the SANS ISC Handler's Diary.

[snip]

As promised by Adobe, Acrobat 7.0.9 has been released to address a cross
site scripting vulnerability. If you are running version prior to 7.0.8,
you should seriously consider to upgrade.

Although there are reports that certain combinations of browsers and
Acrobat versions are not vulnerable, upgrading might be the easiest path to
ensure vulnerability is gone.

[snip]

ISC Handler's Diary Entry:
http://isc.sans.org/diary.html?storyid=2037

Note:
Use this link, instead of the one the SAN ISC lists:
http://www.adobe.com/downloads/updates/

Also, Adobe seems to be 'IE-Friendly' -- their website is
sometimes unresponsive with Firefox.

It is HIGHLY recommended to path to 7.0.9 or go to 8.0.

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.5.2 (Build 4075)

wj8DBQFFpI7nq1pz9mNUZTMRAmeaAKDoiv9k+Rl3sKELNBog7qXI67AyfgCfcLtg
JGBspylkon+RzwWPQDb6h8g=
=QKgc
-----END PGP SIGNATURE-----


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: