
Marathon Asset Management
Current Alerts
2009-12-15
Adobe Vulnerability Alert
Please be advised that Adobe, Inc. has issued an alert
(http://blogs.adobe.com/psirt/2009/12/new_adobe_reader_and_acrobat_v.html)
regarding a security flaw in Adobe Reader and Adobe Acrobat. Adobe has confirmed that this vulnerability affects versions 7.x, 8.x, and 9.x of Reader and Acrobat. This vulnerability is due to a bug in the way Reader/Acrobat processes Javascript code.
Adobe is currently investigating the issue and has not released a patch yet. In the interim, there is a workaround for this problem. Users can disable Javascript within Adobe’s software. This can be done by selecting ‘Edit’ then ‘Preferences’ then selecting ‘Javascript’ in the Categories window on the left hand side and un-checking the ‘Enable Acrobat Javascript’ option on the right hand side.
For assistance on implementing this workaround, please contact our Service Desk at 212-867-4600.
More information can be found at the following link:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-4324
