My buddy Ryan Naraine wrote about this yesterday and I passed it along to a bunch of people via email. For those you who didn’t get my email here is the scoop:
RIM has recently released an advisory about a flaw in the PDF distiller of the Blackberry Attachment Service. This flaw would allow a specially crafted PDF file attachment in an email to cause arbitrary code to execute on the computer that the Blackberry Attachment Service runs on. There is currently no patch available and RIM is recommending BES users disable PDF processing as a work around.
Here are links to the RIM advisory and the Secunia advisory:
http://www.blackberry.com/btsc/articles/660/KB15766_f.SAL_Public.html
Filed under: Blackberry, Security | Leave a Comment
Tags: Blackberry vulnerability, code execution, pdf
No Responses Yet to “PDF related Blackberry Vulnerability”