Foxit Fixes PDF Executable Problem
Foxit on Friday released an update to fix the problem with PDF readers running executables without users' permission. The problem, which was identified and publicized by Didier Stevens earlier this week, still exists in Adobe Reader.
The Foxit security update fixes a problem in the reader in which an attacker can abuse the way that the application handles embedded executables. The technique allows the attacker to force the Foxit Reader to execute embedded files without the getting permission from the user. The problem is caused by a feature in the PDF specification, and isn't a vulnerability in the software itself.
The Foxit update is included in Foxit Reader version 3.2.1.0401.
Recommended Reads
Commenting on this Article is closed.
Today's Most Popular
- Yahoo Includes Private Key in Source File For Axis Chrome Extension
- Researchers Unveil New Way to Trust Certificates
- FBI Warns Top Firms Of Anonymous Protest Hacks on May 25
- DNSChanger Lingers: 330k Systems Still Infected, 77,000 In The U.S.
- Defense Contractor Northrop Grumman Hiring For Offensive Cyber Ops
Most Commented Stories
Newsletter Sign-up
Take Our Poll
Listen to Latest Podcasts
-
-
You are missing some Flash content that should appear here! Perhaps your browser cannot display it, or maybe it did not initialize correctly.
-
You are missing some Flash content that should appear here! Perhaps your browser cannot display it, or maybe it did not initialize correctly.




Comments
Hey Dennis,
The /launch PoC that Didier Stevens put together triggers a warning dialog in Adobe Reader and Acrobat. The default choice on the dialog is to decline the launch request. The original behavior of FoxIt was to launch with no user interaction. The change that FoxIt introduced with their update last week was to bring the behavior in line with Adobe Reader -- displaying a user dialog box prior to launch. An important difference is the dialog defaults to 'open' for FoxIt as opposed to 'do not open' for Adobe Reader.
Brad