Adobe CVEs
cve.mitre.org
Adobe CVEs
1–10 of 23 posts
Re: Adobe CVEs
#2Re: Adobe CVEs
#3Looking at crazy stuff like this, I'm so glad most browsers can render PDFs natively and I don't have to rely on any Adobe software anymore.
Re: Adobe CVEs
#4Looking at crazy stuff like this, I'm so glad most browsers can render PDFs natively and I don't have to rely on any Adobe software anymore.
OK, but then again: https://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=chrome+pdf
Re: Adobe CVEs
#5- exploitable memory corruption
- exploitable heap overflow
- exploitable use after free
Re: Adobe CVEs
#6Looking at crazy stuff like this, I'm so glad most browsers can render PDFs natively and I don't have to rely on any Adobe software anymore.
I've seen Adobe vulnerabilities in the wild, and I've seen the improvements to an organisations security by removing Adobe Reader. Not to mention, the immediate reduction in labour of managing its colossal updates regularly.
However, try to remove Adobe PDF in a business with more than a few people, and ime, it's only a matter of time before you start getting demands for Adobe Reader. End users receive complex PDFs the reader in Chrome and Edge can't deal with more than tech people realise.
I hit this myself recently, having decided to spend a week learning TLA+, and finding the published Hyperbook is just totally broken without a third party PDF viewer.
Re: Adobe CVEs
#7Looking at crazy stuff like this, I'm so glad most browsers can render PDFs natively and I don't have to rely on any Adobe software anymore.
OK, but then again: https://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=chrome+pdf
Re: Adobe CVEs
#8Re: Adobe CVEs
#9How does Adobe allow this to happen? After enough of these over time, you'd think they'd fine some way to invest majorly in securing their runtimes.... either via another language like Mozilla is doing with Rust, some provably secure math-vm-thingie like Microsoft Research, massive security reviews & reduction of attack surfaces like OpenBSD, or another CS-driven solution.
Re: Adobe CVEs
#10Looking at crazy stuff like this, I'm so glad most browsers can render PDFs natively and I don't have to rely on any Adobe software anymore.
OK, but then again: https://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=chrome+pdf