US-CERT Current Activity – Research In Motion Releases Advisory for BlackBerry PDF Distiller Vulnerabilities
US-CERT Current Activity
Research In Motion Releases Advisory for BlackBerry PDF Distiller Vulnerabilities
Original release date: April 20, 2009 at 8:45 am Last revised: April 20, 2009 at 8:45 am
Research In Motion has released a security advisory to address multiple vulnerabilities in the PDF distiller of some released versions of the BlackBerry Attachment Service. The advisory lists the affected versions as BlackBerry Enterprise Server 4.1.3 through 4.1.6 and BlackBerry Professional Software 4.1.4. By convincing a user to view a specially crafted PDF file, an attacker may be able to execute arbitrary code on the system that hosts the Blackberry Attachment Service.
US-CERT encourages users to review BlackBerry security advisory
KB17953 and apply any necessary updates.
Additional information is available in the Vulnerability Notes Database.
Relevant Url(s):
<http://www.kb.cert.org/vuls/id/196617>
<http://www.blackberry.com/btsc/search.do?cmd=displayKC&docType=kc&externalId=KB17953>
====
This entry is available at
http://www.us-cert.gov/current/index.html#research_in_motion_releases_advisory
