Secunia Advisory SA38551Adobe Reader/Acrobat Domain Sandbox Bypass Vulnerability
|
|||||||||||||||||||||||||||||||||||||||||||||||||
Description
A vulnerability has been reported in Adobe Reader and Acrobat, which can be exploited by malicious people to bypass certain security restrictions. The vulnerability is caused due to an error in Flash player and can be exploited to perform unauthorized cross-domain requests. For more information: SA38547 NOTE: Other vulnerabilities are also reportedly present. The vulnerability is reported in Adobe Reader and Adobe Acrobat versions 9.3 and prior. Solution Further details available in Customer Area Original Advisory http://www.adobe.com/support/security/bulletins/apsb10-07.html Other references Technical Analysis Alternate/detailed remediation Deep Links Discuss this advisoryA new thread in our forum is automatically created for each posted Secunia Advisory. Activate the thread by commenting/discussing below.
|
|||||||||||||||||||||||||||||||||||||||||||||||||