<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>[Analysis Details] Adobe Describes Holes, Offered  Patches in Security</title>
<link>http://www.dslreports.com/forum/r20451716</link>
<description></description>
<language>en</language>
<pubDate>Thu, 08 Jan 2009 02:49:41 EDT</pubDate>
<lastBuildDate>Thu, 08 Jan 2009 02:49:41 EDT</lastBuildDate>

<item>
<title>Re: [Analysis Details] Adobe Describes Holes, Offered  Patches</title>
<link>http://www.dslreports.com/forum/remark,20556518</link>
<description><![CDATA[<A HREF="/useremail/u/655093"><b>Name Game</b></A> : How true..but they seem to respond faster to those vulnerabilites...<br><br>&raquo;<A HREF="/forum/r20511135-Foxit-Reader-utilprintf-Buffer-Overflow-Vulnerability">Foxit Reader "util.printf()" Buffer Overflow  Vulnerability</A><br>and I have yet to see one in the wild. ;)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20556518</guid>
<pubDate>Thu, 29 May 2008 08:49:23 EDT</pubDate>
</item>

<item>
<title>Re: [Analysis Details] Adobe Describes Holes, Offered  Patches</title>
<link>http://www.dslreports.com/forum/remark,20555848</link>
<description><![CDATA[<A HREF="/useremail/u/745435"><b>C DM</b></A> : <div class="bquote"><small>said by  Name Game <A HREF="/useremail/u/655093"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>I have given up on Adobe reader now completely..Foxit reader is so much more compact..free and does a great job.<br>Incredibly small: The download size of Foxit Reader is only 2.55 M which is a fraction of Acrobat Reader 20 M size. <br><br>&raquo;<A HREF="http://www.foxitsoftware.com/pdf/rd_intro.php" >www.foxitsoftware.com/pdf/rd_intro.php</A><br><br>If you want some other ideas and comparisons see here<br><br>&raquo;<A HREF="http://www.technospot.net/blogs/5-popular-pdf-readers-compared-and-tested/" >www.technospot.net/blogs/5-popul&middot;&middot;&middot;-tested/</A><br> </div>Foxit is a pretty good reader.  However, this being a security-focused thread (more or less), it should be mentioned it also has security holes (pretty much just like anything else out there).]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20555848</guid>
<pubDate>Thu, 29 May 2008 01:56:24 EDT</pubDate>
</item>

<item>
<title>Re: [Analysis Details] Adobe Describes Holes, Offered  Patches</title>
<link>http://www.dslreports.com/forum/remark,20543952</link>
<description><![CDATA[<A HREF="/useremail/u/655093"><b>Name Game</b></A> : I have given up on Adobe reader now completely..Foxit reader is so much more compact..free and does a great job.<br>Incredibly small: The download size of Foxit Reader is only 2.55 M which is a fraction of Acrobat Reader 20 M size. <br><br>&raquo;<A HREF="http://www.foxitsoftware.com/pdf/rd_intro.php" >www.foxitsoftware.com/pdf/rd_intro.php</A><br><br>If you want some other ideas and comparisons see here<br><br>&raquo;<A HREF="http://www.technospot.net/blogs/5-popular-pdf-readers-compared-and-tested/" >www.technospot.net/blogs/5-popul&middot;&middot;&middot;-tested/</A>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20543952</guid>
<pubDate>Mon, 26 May 2008 23:50:38 EDT</pubDate>
</item>

<item>
<title>Re: [Analysis Details] Adobe Describes Holes, Offered  Patches</title>
<link>http://www.dslreports.com/forum/remark,20543734</link>
<description><![CDATA[<A HREF="/useremail/u/854295"><b>Libra</b></A> : Thanks for that link, Cudni.  As a result, I removed version 7.0.8 and installed 7.1.0 last week.<br><br>Sincerely, Libra]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20543734</guid>
<pubDate>Mon, 26 May 2008 22:52:49 EDT</pubDate>
</item>

<item>
<title>Re: [Analysis Details] Adobe Describes Holes, Offered  Patches</title>
<link>http://www.dslreports.com/forum/remark,20458417</link>
<description><![CDATA[<A HREF="/useremail/u/917630"><b>Cudni</b></A> : also<br>&raquo;<A HREF="/forum/r20452199-Adobe-Security-Advisory">Adobe Security Advisory:</A><br><br>Cudni]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20458417</guid>
<pubDate>Fri, 09 May 2008 17:57:49 EDT</pubDate>
</item>

<item>
<title>Re: [Analysis Details] Adobe Describes Holes, Offered  Patches</title>
<link>http://www.dslreports.com/forum/remark,20458374</link>
<description><![CDATA[<A HREF="/useremail/u/854295"><b>Libra</b></A> : Hi NameGame,<br>  Thank you for the information.<br>  I have Adobe Reader 7.0.8 installed on the XP computer.  In view of past vulnerabilities I set it within the program to not access the internet and also turned off javascript.  Also, it would only be used in a limited user account.  Do I have to be concerned about this version?  <br>  Sincerely, Libra]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20458374</guid>
<pubDate>Fri, 09 May 2008 17:48:08 EDT</pubDate>
</item>

<item>
<title>[Analysis Details] Adobe Describes Holes, Offered  Patches</title>
<link>http://www.dslreports.com/forum/remark,20451716</link>
<description><![CDATA[<A HREF="/useremail/u/655093"><b>Name Game</b></A> : Adobe Describes Holes, Offers Patches<br><br>Three months after acknowledging multiple vulnerabilities in its popular Reader software and then patching the program, Adobe Tuesday finally provided some details about the bugs.<br><br>In a security bulletin issued Tuesday, Adobe listed eight vulnerabilities -- most of them critical -- that it patched in early February when it released Reader 8.1.2 and Acrobat 8.1.2. At the time, Adobe had only said it fixed "a number of ... security vulnerabilities" in the two programs; it did not specify how many flaws were fixed, what they were or how attackers might exploit them.<br><br>Reader is one of the world's most popular pieces of software, since it's both free and the default PDF viewer for many users.<br><br>The secrecy three months ago puzzled security researchers, who noted that Adobe was usually more forthcoming about vulnerabilities. Today, one researcher speculated about the mystery. "I think Adobe thought the severity of the vulnerabilities warranted some secrecy," said Andrew Storms, nCircle's director of security operations. "Six of the eight are in JavaScript. That's not a very difficult attack scenario. It's not as if you have to compile code. And it's going to work on any processor, and on almost any machine."<br><br>Even though Adobe disclosed some information about the bugs it fixed in February, the bulletin was still terse. It did not spell out possible attack vectors or even rate the bugs. "These vulnerabilities would cause the application to crash and could potentially allow an attacker to take control of the affected system," was about as far as the bulletin ventured.<br><br>Storms agreed that the three-month lag between patching the vulnerabilities and divulging some details was extreme, but noted that many of the flaws went back farther than February. "Some were apparently disclosed [to Adobe by researchers] in late 2007," he said. "There's one from November, and others from September and October."<br><br>&raquo;<A HREF="http://www.pcworld.com/businesscenter/article/145623/adobe_describes_holes_offers_patches.html" >www.pcworld.com/businesscenter/a&middot;&middot;&middot;hes.html</A><br><small>--<br>Gladiator Security Forum  &raquo;<A HREF="http://www.gladiator-antivirus.com/" >www.gladiator-antivirus.com/</A> <br>*<br>A fun/friendly/informative forum for the mature elder crowd<br>  &raquo;<A HREF="http://www.theover50goldengroup.net" >www.theover50goldengroup.net</A><br></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20451716</guid>
<pubDate>Thu, 08 May 2008 13:28:59 EDT</pubDate>
</item>

</channel>
</rss>
