Jump to content

File permissions vulnerability in Adobe Photoshop


Recommended Posts

Posted
Security Advisory: File permissions vulnerability in Adobe Creative Suite 2 (Windows, Mac OS)

 

Release Date: February 2, 2006

 

Products: Adobe Creative Suite 2, Adobe Photoshop CS2, Adobe Illustrator CS2

 

Platform: Windows, Mac OS

 

Vulnerability Identifier: APSB06-01

 

Overview: Adobe has been made aware that the file and folder permissions for Photoshop CS2, Illustrator CS2, and Adobe Help Center can permit non-privileged users to change key program files. This condition presents a risk for shared, multi-user systems. Adobe is providing update utilities which correct these access permission issues and prevent manipulation of the program files by non-privileged users. Adobe recommends that customers using CS2 products on shared systems apply these updates.

 

Effect: If exploited, this vulnerability could allow a hostile user to replace these program files with malicious or harmful code that could read, write, or destroy sensitive data if subsequently run by a privileged user.

 

Details: The identified vulnerability allows non-privileged users permission to change key program files. This condition presents a risk for shared, multi-user systems. On such systems, a hostile user could take advantage of this condition to replace these program files with malicious or harmful code that could read, write, or destroy sensitive data if subsequently run by a privileged user.

 

Severity: Adobe categorizes this issue as an important issue and recommends that users patch their installations.

 

Recommendations: Download and install the AdobeSecurityPatcher from one of the following locations:

 

Adobe Illustrator CS2:

 

-- Windows:  http://www.adobe.com/support/downloads/detail.jsp?ftpID=3308

 

-- Mac OS: http://www.adobe.com/support/downloads/detail.jsp?ftpID=3307

 

Adobe Photoshop CS2:

 

-- Windows:  http://www.adobe.com/support/downloads/detail.jsp?ftpID=3306

 

-- Mac OS: http://www.adobe.com/support/downloads/detail.jsp?ftpID=3305

 

Adobe Creative Suite Premium:

 

-- Windows:  http://www.adobe.com/support/downloads/detail.jsp?ftpID=3304

 

-- Mac OS: http://www.adobe.com/support/downloads/detail.jsp?ftpID=3303

 

Adobe Creative Suite Standard:

 

-- Windows:  http://www.adobe.com/support/downloads/detail.jsp?ftpID=3230

 

-- Mac OS: http://www.adobe.com/support/downloads/detail.jsp?ftpID=3223

Source: http://www.adobe.com/support/techdocs/332644.html

 

icon13.gifBe aware. Adobe categorizes this issue as an important issue and recommends that users patch their installations.

Please support the forum by ordering everything through our special Amazon.com link

Click here. Thank you!

Posted
thanks for the info Bellamy :flowers:
Posted (edited)

I don't understand... are they saying that people are messing with key files to release viruses or to install Photoshop on multiple machines illigally? :huh:

 

Anyway... I'll be downloading the patch for sure!!

Edited by AllCeline


http://i34.tinypic.com/9ybm.jpg

http://i54.tinypic.com/o56kr5.jpg

http://i54.tinypic.com/vhqqu9.jpg

>> flickr | WordPress <<

Celine Dion needs another ANDHC/OH album!
No more Taking Chances--just do what works!

Posted
tancks for the info :)

Encore un soir..

Encore une heure..

Encore une larme de bonheur..

Un soir..

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...