No. 1 Story

HP job cuts loom for Australian employees

A number of Australian employees of Hewlett-Packard are facing the loss of their jobs as the global computer giant looks to slash its worldwide workforce by up to 30,000.

read more

Related Articles

Outofcycle, security, patches, for, Acrobat, and, Reader
Australian businesses are becoming soft targets for malicious hackers and they lag significantly behind...
To address the ever growing concerns of CIOs around security of mobile devices, US...
Juniper Networks has extended its SSL VPN security to the iPad with the release...
Virgin Blue late yesterday confirmed it had sacked 20 staff for what the airline...
Microsoft is planning to dish up heapin' helpin' of security bulletins next week. So...

Out-of-cycle security patches for Acrobat and Reader

Business IT - Security

Adobe has released updates for Acrobat and Reader that fix multiple critical security vulnerabilities.


Out-of-cycle security updates for Adobe Acrobat and Reader address multiple security vulnerabilities that the company classed as critical.

The vulnerabilities addressed by Acrobat and Reader 9.3.4 include the possibility of executing arbitrary code contained in a maliciously formed TrueType font. Adobe has also used the update to deliver further mitigations against the social engineering attack addressed in the 9.3.3 updates which were released at the end of June.

That attack worked by causing Acrobat or Reader to open a malicious object such as an attached executable while displaying a dialog designed to allay victims' fears. Shortly after the update was released, it was discovered that Adobe's blacklist of potentially harmful filetypes could be defeated by enclosing the malicious filename in quotes.

The latest updates also incorporate the Flash Player update released earlier this month. Download links can be found in Adobe security bulletin APS10-15.

The 9.3.4 updates for Acrobat and Reader apply to the Windows, Macintosh and Unix versions. They can be installed by using the Check for Update commands. The Reader full installer will be updated to version 9.3.4 by the end of the month.

Users of older operating systems that are stuck on Acrobat or Reader 8.x are advised to update to the 8.2.4 versions.

A quarterly update of Reader and Acrobat remains scheduled for October 12.