Critical vulnerability in Adobe Reader 7.0.9 and 8.1.2

Bug #247379 reported by Lionel Le Folgoc
254
Affects Status Importance Assigned to Milestone
Medibuntu
Invalid
Undecided
Unassigned
Feisty
Fix Released
High
Lionel Le Folgoc
Gutsy
Fix Released
High
Lionel Le Folgoc
Hardy
Fix Released
High
Lionel Le Folgoc
Intrepid
Invalid
Undecided
Unassigned

Bug Description

A critical vulnerability has been identified in Adobe Reader and Acrobat 8.1.2 and earlier versions. This vulnerability would cause the application to crash and could potentially allow an attacker to take control of the affected system.

http://www.adobe.com/support/security/bulletins/apsb08-15.html

Neither Adobe Reader 8.1.2 security update 1 nor Adobe Reader 7.1.0 are available for Linux. For feisty, it'll probably be dropped from the archive (see Bug #190570). For gutsy and hardy, I think we should upload a new revision without the vulnerable plugin (Annots.api).

CVE References

Revision history for this message
Lionel Le Folgoc (mrpouit) wrote :

Invalid for intrepid, our repository isn't opened yet, and it'll "automatically" be imported from hardy.

To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.