PDF security hole or not !!

I wouldn't take any website that discusses security issues and uses "pwns" too seriously right now :p
 
Having seen a few security alerts (on CVE) over the years for PDF readers like Adobe Acrobat and xpdf I'd say this shouldn't be taken too lightly. Seeing as the XSS stuff uses JS, the success of the sploit will depend on the conformability of the reader's JS implementation, so it's not that straightforward though.

@WKJ?:beanie - here's an alert that doesn't include the word "pwns" :D (it's from that same "pdp" guy though):
http://www.securityfocus.com/archive/1/455829

Some more interesting stuff:
http://michaeldaw.org/md-hacks/backdooring-pdf-files
 
Top
Sign up to the MyBroadband newsletter
X