Recent Adobe Reader vulnerability exploited in-the-wild
February 11st, 2008
A remote code execution vulnerability in Adobe’s Reader is currently being actively exploited in the wild. According to first reports, malicious ad banners are probably redirecting users to PDF documents exploiting this critical vulnerability. Upon opening the malicious PDF document, users would get infected by the ZoneBac trojan.
The vulnerability, entitled CVE-2008-0655, has already been fixed by Adobe with their update to Adobe Reader version 8.1.2 . All users should make sure to upgrade to Adobe Reader 8.1.2 as soon as possible!
Users of Secure Computing’s Webwasher Anti-Malware are protected with Proactive Database version #81, which includes a generic detection of these exploits (proactively blocked as “Exploit.PDF.ZoneBac.gen”).
Author: Anti-Malware Team
Back to TrustedSource™ Blog overview