Start a Conversation

Unsolved

This post is more than 5 years old

7162

April 29th, 2013 12:00

McAfee Spots Adobe Reader PDF-tracking Flaw


A flaw in Adobe Reader could allow an attacker to see when and where a PDF is opened.

McAfee said it has found a vulnerability in Adobe Systems' Reader program that reveals when and where a PDF document is opened.

The issue is not a serious problem and does not allow for remote code execution, wrote McAfee's Haifei Li in a blog post. But McAfee does consider it a security problem and has notified Adobe. It affects every version of Adobe Reader, including the latest version, 11.0.2, Li wrote.

McAfee recently detected some "unusual" PDF samples, Li wrote. McAfee withheld some key details of the vulnerability, but did generally describe it.

The issue occurs when someone launches a link to another file path, which calls on a JavaScript API (application programming interface). Reader warns a user when they are going to call on a resource from another place, such as a link on the Internet.

If the external resource does not exist, the warning dialog does not appear, but the API returns some TCP traffic, Li wrote. By manipulating a second parameter with a special value, the API's behavior changes to reveal information. That could include information such as the location of a document on a system "by calling the JavaScript 'this.path' value," Li wrote.

Continued: http://www.cso.com.au/article/460356/mcafee_spots_adobe_reader_pdf-tracking_flaw/

3 Apprentice

 • 

15.2K Posts

May 3rd, 2013 09:00

No Events found!

Top