Critical Adobe PDF Flaw Affects IE

By Nate Mook | Published November 30, 2006, 3:31 PM

Adobe on Thursday acknowledged in a security advisory that critical security vulnerabilities have been found in its Acrobat and Adobe Reader programs. The issue affects versions 7.0.0 through 7.0.8, and the company says it is working on a fix.

Acrobat and Reader 8.0, which will be available soon, are not impacted by the issue. According to Adobe, the problem lies in an ActiveX control used by Internet Explorer. Other browsers are not affected, although Adobe recommends manually removing the AcroPDF.dll plug-in file as a workaround until an update is available for download.

Comments

View comments by with a score of at least

Folks not using IE are not vulnerable to this bug, but are being asked to delete a .dll file anyway? This seems like pretty bad advice. Just another reason not to use IE seems more like the better workaround! What I find annoying about Acrobat 7 Pro, besides the fact that it's bloatware and you can't control which feature sets to install, is that it corrupts normal.dot in word if you install the office plugin. I also think it's madness that they still don't have any integration with Firefox! I use pdfFactory Pro to print searchable pdf files from Firefox. Actually, for most pdf print jobs it's amazing with its small file sizes and its incredible speed. Obviously it's not a reader though.

Score: 0

|

if you just want a reader, do yourself a favor and d/l foxit. It's light and much faster

Score: 0

|

Agreed. Foxit does or did have some printing issues, but I rarely print anything and never print PDF at all, so those were non-issues to me. If you really just need/want a READER, you'll be much better off putting the behemoth that is Abobe in the recycle bin.

Score: 0

|

Great so other than the occasional printing, viewing, rendering issues, foxit rocks. *rollseyes*

Score: 0

|

Use it. Its shortcomings are much smaller than acrobat.

Score: 0

|

I do use it, but I find acrobat the more consistent and trouble-free program. Look, the first time you print something out in color using foxit, and it's for a presentation due in 10 minutes for the shareholders of your company that each bill out at $400+/hour rate, and it comes out splotchy and you don't have time for fun and games, you'll value adobe's printing, rendering engines.

If all you are doing are looking at manuals or anything noncritical, fine, play with your toys. The rest of us need the rock solid ability to do lots of things with PDF's. I don't like some of the directions adobe has taken it, but they do have the ability to read, display, validate, print pdf's down pat, finally, in version 8.

Score: 0

|

Fine, so for you, Adobe would seem like the genuinely better choice, and therefore, as you should under that particular set of circumstances, you use it. Most folks aren't under that set of circumstances, though, and as such, may do very well with a different choice.

Score: 0

|

I assume you're saying you prefer Acrobat over Foxit, not Reader, right? Because if anyone has had experiences similar to me, they wouldn't use the words "rock solid" and "adobe" when talking about pdf files.

Score: 0

|

I'm curious why "most folks" would want less performance and ability when the cost (zero) is the same?

Score: 0

|

performance to me is "reliability." If the thing don't work, it's "performance" is meaningless.

Acrobat is more reliable than foxit in any professional environment that depends on accurate PDF viewing, printing, reproduction, workflow. Period. You don't believe me look over at foxit's forums: the people there have problems with the program. Look over at adobe's forums: the people have problems with individual PDF's and activation (yuk, I'll admit) but the program itself works...

Acrobat Version 8, finally, will validate for proper PDF compatibility, and will allow you to repair PDF's that are made by shoddy third party programs. This is a good thing.

Score: 0

|

Agreed. Adobe REALLY sucks at writing software and as a company in general. I won't go into all the trouble we have here at my company with them. Let just say, try getting a hold of their support and you will see what I mean.

Score: 0

|

You mean Adobe HAS a support department?

Talking to Adobe is like trying to contact aliens. I use several Adobe products and have found it far better to contact fellow users to get answers than to try Adobe. Their knowledgebase is often a joke. Like many software houses these days, Adobe is far more interested on sales than after-sales.

Score: 0

|

Latest Firefox 3.6 beta fixes 133 bugs, promises faster page load times

A once-sluggish beta testing process has kicked into overdrive, with astonishing success at finding serious bugs. Will Mozilla be able to fix all the others in time?

Apple invokes DMCA, claims Psystar is 'trafficking in circumvention devices'

In trying to close the book on possibly the last attempt at a Mac clone, Apple cites from its own landmark case...but may actually be misinterpreting it.

The fallacy of Facebook privacy

Carmi Levy | Wide Angle Zoom: If an insurance company learns something interesting about its client through the Internet, is that snooping?

Microsoft 'worked with Apple' for Silverlight on iPhone, says Goldfarb

By not making such a big deal out of trying to stream video to the iPhone, Microsoft got a big deal out of it, revealed the Silverlight product manager.

Confirmed: Office 2010 to ship in June

Two weeks after Microsoft had been expected to draw a clearer roadmap for its principal applications suite, it's finally ready to commit to the end of H1.

New EU antitrust commissioner will oversee Microsoft, Oracle+Sun, Intel issues

As one of Europe's most prominent politicians shifts positions in January, her replacement remains a question mark over technology's biggest issues.

Without its own 'iTablet' yet, is Apple missing the boat?

Steve Jobs is on record as dissing "single-purpose" devices like e-readers. But given their recent popularity, was that a mistake?

Not-so-mobile battery life: Time to force the issue

Carmi Levy | Wide Angle Zoom: If power efficiency is important when you buy a car or even a motorcycle, why shouldn't it matter for a smartphone?

Clicker.com cuts through the Web video chaos

In a world where homemade video and Hollywood movies travel the same pipeline, it's good to have a real search engine to cut through the clutter.

Microsoft's Ray Ozzie: 'Nobody's going to be 100% open'

The mobile apps ecosystems of the world may converge over time, led by apps being ported over across platforms, according to the Chief Software Architect.

A case study in improving software: What Office 2010 can learn from Notion 3

A music composition product gambles with a complete overhaul, in an effort to make headway against two well-known competitors in a tough market.