4 Replies Latest reply on Jan 16, 2010 9:46 AM by shunithD

    Illustrator security update? (Jan 7)

    John Hawkinson Level 5

      Apparently a security update was released for Illustrator CS3 and CS4 yesterday?

      CVE-2009-3952 was just released:

      Overview
               

      Buffer
      overflow in Adobe Illustrator CS3 13.0.3 and earlier and Illustrator
      CS4 14.0.0 allows attackers to execute arbitrary code via unspecified
      vectors.

      It references Adobe's security bulletin released yesterday:

      Platform: Windows and Macintosh


       


      Summary

      Critical vulnerabilities have been identified in Adobe Illustrator CS4 (14.0.0) and Adobe Illustrator CS3 (13.0.3 and earlier versions), on the Windows and Macintosh operating systems. The vulnerabilities could lead to arbitrary code execution. Adobe has provided a solution for the reported vulnerabilities. It is recommended that users update their installations using the instructions provided below.


      Affected software versions

      Adobe Illustrator CS4 (14.0.0)
      Adobe Illustrator CS3 (13.0.3 and earlier versions)


      Solution

      Adobe recommends Adobe Illustrator users install the relevant update as detailed below:

      ...