Adobe Issues Emergency Patches For Reader & Acrobat: Update Now

By Alexandra Burlacu | Feb 22, 2013 09:40 AM EST

Share This Story

  • Print
  • Email

Adobe issued a critical update to users of its Reader and Acrobat software, patching a vulnerability that could allow hackers to take control of victims' computers.

The company recommends that all users of Adobe Reader and Acrobat XI and earlier, use the patch. The updates are designed for Windows, Macintosh and Linux users for versions 11.0.01, 10.1.5, 9.x and earlier version of Adobe's software. The updates address vulnerabilities that could cause a crash or potentially allow attackers to take control over affected systems.

Follow us

The Adobe Reader update for Windows is available here, while Mac users can grab it at this link and Linux users can find it here. Adobe Acrobat Standard, Pro and Pro Extended users on Windows can find the update at this link, while Acrobat Pro users on Macintosh can get it here. Adobe further notes that automatic updates are enabled by default, but users can also manually check for an update by clicking Help > Check for updates.

The updates patch two vulnerabilities: CVE-2013-0640 and CVE-201300641. According to Adobe, targeted attacks are exploiting both vulnerabilities in attempts to trick Windows users into clicking on a malicious PDF file delivered by email. The vulnerabilities impact Windows and Mac users alike.

"Adobe recommends users apply the updates for their product installations," cautions the company. Adobe labeled the vulnerabilities as critical. The update follows a warning last week from security company FirstEye, which discovered that attackers were launching malicious PDFs at Windows users in a zero-day attack. The exploit is reportedly the first to bypass the sandbox technology Adobe uses in its software. According to FirstEye, the vulnerability could deploy two Dynamic Link Library (DLL) files when successfully exploited.

When a user opens the attachment, the embedded malware downloads two DLL files. One of those files displays a fake error message and opens a PDF document, while the other installs "callback" software onto the infected computer. Once installed, the malware calls back to a remote server.

Adobe reader and Adobe Acrobat users should update immediately, or at least activate Protected View. Activating this option may affect the number of options available in the software (no more printing, for instance), but it will prevent attacks from executing malicious code from within the documents.

If for some reason users cannot install the updates, they can turn on Protected View by clicking Edit > Preferences > Security (Enhanced) and checking the box next to "Files from potentially unsafe locations." Users can also check the "All Files" option as well.

Get the Most Popular Mobile&Apps Stories in a Weekly Newsletter

© 2013 Mobile & Apps All rights reserved. Do not reproduce without permission.

Join Our Conversation

Smartphones
Galaxy S4 Google EditionSamsung Galaxy S4 Google Edition: $649 Price Tag Explained
Nokia EOS Details Allegedly Leaked: Once Again Nokia Focuses On The Camera
Samsung Galaxy Note 3 May Sport Same Familiar Plastic Design, Not Metal
Intellicam App Brings First Hands-Free Camera Feature To Windows Phone 8
Tablet / Laptop / PC
Nexus 7Nexus 7 Refresh Teased In Google+ Hangouts Video, Sports Glowing Notification Light
AMD Unleashes Radeon 8900M Mobile GPU: Get It In MSI GX70 Gaming Laptop
Dell XPS 10 Drops Price To $300, Marking A New Low For Windows RT
HP Slatebook x2 Convertible Laptop Rocks Nvidia Tegra 4, Android 4.2 Jelly Bean
Gadgets
Google GlassGoogle Glass Raises Lawmakers' Concerns: Congress Demands Answers About Privacy
Seven New Apps Coming To Google Glass: Facebook, Twitter, And Evernote Included
Android 4.2.2 Jelly Bean, Chrome Update For Google TV: End Of Flash?
AMD Unleashes Radeon 8900M Mobile GPU: Get It In MSI GX70 Gaming Laptop
OS / Software
Samsung Galaxy S4 Gets TCO CertificationSamsung Galaxy S4 Gets TCO Certification
Android 4.3 Jelly Bean Coming On June 10: Absent From Google I/O 2013 Intentionally
Android 4.2.2 Jelly Bean, Chrome Update For Google TV: End Of Flash?
Google Wallet Update: Send Money To Friends With Gmail, Make One-Click Purchases On The Go
Internet / Social Media
The Yahoo logYahoo Is Eyeing Tumblr
Google I/O 2013: Chrome Web Browser Now Has 750 Million Active Users
Google I/O 2013: Google Maps Gets New UI And Google+ Hangouts Shows Massive Improvements
Gtalk Chat Integration Coming To Outlook.com
What's App
Intellicam Windows Phone 8Intellicam App Brings First Hands-Free Camera Feature To Windows Phone 8
Seven New Apps Coming To Google Glass: Facebook, Twitter, And Evernote Included
Itsdagram Available Now For Windows Phone: Best Instagram Client Around
Google I/O 2013: Chrome Web Browser Now Has 750 Million Active Users

DON'T MISS

Galaxy S4 White Frost
Verizon Samsung Galaxy S4 To Come On May 23
According to an update on Verizon's news page, the Galaxy S4 will now be available in Verizon
Galaxy S4 Google Edition
Samsung Galaxy S4 Google Edition Launched: Rumors Say It's Nexus 5
The new edition of the Galaxy S4 is being seen as an alternative to the Nexus smartphones as the
RIM BlackBerry 10
BlackBerry Live: 120,000 Apps in BlackBerry World, Gaining on Windows Phone
The numbers are in, and it appears BlackBerry World might walk over Windows Phone sooner or later.
Windows Blue
Windows 'Blue' Will Come As Free Update For Windows 8, Windows RT Users
Despite previous rumors, Windows 8.1 dubbed Windows 'Blue' will be available as a free update to
LG Google TV
Android 4.2.2 Jelly Bean, Chrome Update For Google TV: End Of Flash?
The Google TV has now be 'refactored' so the OEMs of the device can update their settop boxes to
Samsung Galaxy S4 'Blue Arctic'
Samsung Galaxy S4 Blue Arctic Gets Official On Docomo Network
Samsung Galaxy S4 Blue Arctic is real but it is not yet clear whether the handset is exclusively

Galaxy S4 White Frost
Samsung To Look Into 16GB Galaxy S4 Storage Woes, 'Software Optimization' Might Free More Space
Samsung has finally responded to storage woes concerning the 16GB Samsung Galaxy S4 and said it may
Samsung Galaxy S4 Mini 'Leaked' Image
Samsung Galaxy S4 Mini Spotted In Leaked Images Once Again
In the latest series of leaked pictures, the Galaxy S4 mini is shown from every possible angle and
Google Maps
Google I/O 2013: Google Maps Gets New UI And Google+ Hangouts Shows Massive Improvements
Fans of Google products will love the new look of Google Maps and Google+ Hangouts.
MSI GX70
AMD Unleashes Radeon 8900M Mobile GPU: Get It In MSI GX70 Gaming Laptop
Do you enjoy gaming on a laptop? The AMD Radeon 8900M might excite you along with the MSI GX70.
Copyright © 2013 Mobile & Apps All rights reserved. mobilenapps
Real Time Analytics