Author Topic: Flash/PDF zero day  (Read 2655 times)

0 Members and 1 Guest are viewing this topic.

July 22, 2009, 05:02:23 pm
Read 2655 times

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
http://www.infosecblog.org/2009/07/flash-zero-day.html

Quote

iDefense has seen a Flash zero day exploit within a PDF file during a recent zero day attack investigation.

Its hard to believe that at one point in time PDF files were considered safe.

http://blogs.adobe.com/psirt/2009/07/potential_adobe_reader_and_fla.html

http://www.symantec.com/business/security_response/writeup.jsp?docid=2009-072209-2512-99&tabid=1

Quote
Trojan.Pidief.G is a Trojan horse that arrives in a .pdf file and exploits a vulnerability in Adobe Flash Player.
Ruining the bad guy's day

July 23, 2009, 05:50:00 am
Reply #1

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
New 0-Day Attacks Using PDF Documents
http://www.avertlabs.com/research/blog/index.php/2009/07/22/new-0-day-attacks-using-pdf-documents/

Update on Adobe Reader, Acrobat and Flash Player Issue
http://blogs.adobe.com/psirt/2009/07/update_on_adobe_reader_acrobat.html
Quote
We are in the process of developing a fix for the issue, and expect to provide an update for Flash Player v9 and v10 for Windows, Macintosh, and Linux by July 30, 2009 (the date for Flash Player v9 and v10 for Solaris is still pending). We expect to provide an update for Adobe Reader and Acrobat v9.1.2 for Windows, Macintosh, and UNIX by July 31, 2009.
Ruining the bad guy's day

July 23, 2009, 01:30:18 pm
Reply #2

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
Ruining the bad guy's day

July 23, 2009, 06:42:17 pm
Reply #3

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
http://twitter.com/pusscat/statuses/2800878687

Quote
Heads up: there are currenty 2 distinct adobe 0day exploiting different vulns in the wild.
Ruining the bad guy's day

July 24, 2009, 08:55:57 am
Reply #4

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
Flash in the pdf? Another vulnerability with Adobe PDF/Flash
http://www.sophos.com/blogs/sophoslabs//?p=5524
Ruining the bad guy's day

July 24, 2009, 04:48:15 pm
Reply #5

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
Ruining the bad guy's day

July 24, 2009, 08:43:20 pm
Reply #6

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
Ruining the bad guy's day