<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: 0day: PDF pwns Windows</title>
	<atom:link href="http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/</link>
	<description>Information Security Think Tank</description>
	<lastBuildDate>Mon, 12 Dec 2011 19:56:03 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
	<item>
		<title>By: Confirmation d&#8217;une vulnÃ©rabilitÃ© critique dans Adobe Reader et Acrobat â€” SecurityVibes Magazine</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-129775</link>
		<dc:creator>Confirmation d&#8217;une vulnÃ©rabilitÃ© critique dans Adobe Reader et Acrobat â€” SecurityVibes Magazine</dc:creator>
		<pubDate>Wed, 23 Mar 2011 15:15:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-129775</guid>
		<description>[...] informatique Ã  Ãªtre sur le qui-vive, dans l&#8217;attente de la confirmation d&#8217;une vulnÃ©rabilitÃ© dÃ©couverte par Petko D. Petkov et affectant notamment le lecteur PDF Adobe Reader, trÃ¨s rÃ©pandu en milieu professionnel. Andrew [...]</description>
		<content:encoded><![CDATA[<p>[...] informatique Ã  Ãªtre sur le qui-vive, dans l&#8217;attente de la confirmation d&#8217;une vulnÃ©rabilitÃ© dÃ©couverte par Petko D. Petkov et affectant notamment le lecteur PDF Adobe Reader, trÃ¨s rÃ©pandu en milieu professionnel. Andrew [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: .:[ d4 n3wS ]:. &#187; Blog Archive &#187; VulnÃ©rabilitÃ© dans Acrobat Reader</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-128749</link>
		<dc:creator>.:[ d4 n3wS ]:. &#187; Blog Archive &#187; VulnÃ©rabilitÃ© dans Acrobat Reader</dc:creator>
		<pubDate>Wed, 25 Aug 2010 04:14:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-128749</guid>
		<description>[...] Origine de l&#8217;article : http://www.gnucitizen.org/blog/0day-pdf-pwns-windows [...]</description>
		<content:encoded><![CDATA[<p>[...] Origine de l&#8217;article : <a href="http://www.gnucitizen.org/blog/0day-pdf-pwns-windows" rel="nofollow">http://www.gnucitizen.org/blog.....ns-windows</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Moose</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-126146</link>
		<dc:creator>Moose</dc:creator>
		<pubDate>Wed, 25 Feb 2009 18:44:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-126146</guid>
		<description>Does this affect Windows XP w/ Service Pack 3?

Thanks</description>
		<content:encoded><![CDATA[<p>Does this affect Windows XP w/ Service Pack 3?</p>
<p>Thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Backdooring PDF Files</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-125907</link>
		<dc:creator>Backdooring PDF Files</dc:creator>
		<pubDate>Tue, 10 Feb 2009 14:09:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-125907</guid>
		<description>[...] 20/09/07 - PDP&#8217;s PDF URI Parsing Vulnerability [...]</description>
		<content:encoded><![CDATA[<p>[...] 20/09/07 &#8211; PDP&#8217;s PDF URI Parsing Vulnerability [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Don&#8217;t Open PDF Documents If You Run Windows ~ usrbingeek&#8217;s musings</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-122197</link>
		<dc:creator>Don&#8217;t Open PDF Documents If You Run Windows ~ usrbingeek&#8217;s musings</dc:creator>
		<pubDate>Thu, 22 May 2008 04:13:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-122197</guid>
		<description>[...] [0day: PDF pwns Windows] [...]</description>
		<content:encoded><![CDATA[<p>[...] [0day: PDF pwns Windows] [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Adobe PDF è¢«ç™¼ç¾é›¶æ™‚å·®å®‰å…¨æ¼æ´ž &#124; å¤§ç ²é–‹è¬›</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-119798</link>
		<dc:creator>Adobe PDF è¢«ç™¼ç¾é›¶æ™‚å·®å®‰å…¨æ¼æ´ž &#124; å¤§ç ²é–‹è¬›</dc:creator>
		<pubDate>Fri, 25 Apr 2008 08:38:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-119798</guid>
		<description>[...] GnuCitizençš„pdpæœ€è¿‘åœ¨ä»–å€‘çš„éƒ¨è½æ ¼å¼µè²¼äº†ä¸€ç¯‡æ–‡ç« ï¼Œæ˜¯æœ‰é—œPDFæª”æ¡ˆå‡ºç¾é›¶æ™‚å·®å®‰å…¨æ¼æ´žã€‚å¦‚æžœä½¿ç”¨è€…é–‹å•Ÿä¸€å€‹ç‰¹åˆ¥è£½ä½œçš„PDFæª”æ¡ˆï¼Œå°±å¯ä»¥è®“æ”»æ“Šè€…æŽ§åˆ¶ä½ çš„ç³»çµ±ã€‚è«‹å„ä½ä¸è¦äº‚é–‹å•Ÿä¾†è·¯ä¸æ˜Žçš„PDFæª”æ¡ˆã€‚ åœ¨é€™ç¯‡æ–‡ç« ä¸­ï¼Œä½œè€…åªå±•ç¤ºäº†æ­¤å®‰å…¨æ¼æ´žï¼Œä¸¦å®£ç¨±å·²ç¶“ç²å¾—Adobeï¼Œä½†æ²’æœ‰å…¬é–‹é©—è­‰ç¨‹å¼ï¼Œä»¥è‡´æ–¼æœ‰äº›äººç™¼å‡ºè³ªç–‘çš„è²éŸ³ã€‚ [...]</description>
		<content:encoded><![CDATA[<p>[...] GnuCitizençš„pdpæœ€è¿‘åœ¨ä»–å€‘çš„éƒ¨è½æ ¼å¼µè²¼äº†ä¸€ç¯‡æ–‡ç« ï¼Œæ˜¯æœ‰é—œPDFæª”æ¡ˆå‡ºç¾é›¶æ™‚å·®å®‰å…¨æ¼æ´žã€‚å¦‚æžœä½¿ç”¨è€…é–‹å•Ÿä¸€å€‹ç‰¹åˆ¥è£½ä½œçš„PDFæª”æ¡ˆï¼Œå°±å¯ä»¥è®“æ”»æ“Šè€…æŽ§åˆ¶ä½ çš„ç³»çµ±ã€‚è«‹å„ä½ä¸è¦äº‚é–‹å•Ÿä¾†è·¯ä¸æ˜Žçš„PDFæª”æ¡ˆã€‚ åœ¨é€™ç¯‡æ–‡ç« ä¸­ï¼Œä½œè€…åªå±•ç¤ºäº†æ­¤å®‰å…¨æ¼æ´žï¼Œä¸¦å®£ç¨±å·²ç¶“ç²å¾—Adobeï¼Œä½†æ²’æœ‰å…¬é–‹é©—è­‰ç¨‹å¼ï¼Œä»¥è‡´æ–¼æœ‰äº›äººç™¼å‡ºè³ªç–‘çš„è²éŸ³ã€‚ [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JohnFavorite.com &#187; Blog Archive &#187; 0day: PDF pwns Windows</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-117727</link>
		<dc:creator>JohnFavorite.com &#187; Blog Archive &#187; 0day: PDF pwns Windows</dc:creator>
		<pubDate>Tue, 01 Apr 2008 08:03:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-117727</guid>
		<description>[...] going through the [Full-disclosure] mailing list I came across this gem. It seems as though Petko Petkovhave over at GNUCITIZEN found a serious flaw in the way Adobe [...]</description>
		<content:encoded><![CDATA[<p>[...] going through the [Full-disclosure] mailing list I came across this gem. It seems as though Petko Petkovhave over at GNUCITIZEN found a serious flaw in the way Adobe [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: CG</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-114763</link>
		<dc:creator>CG</dc:creator>
		<pubDate>Thu, 14 Feb 2008 22:47:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-114763</guid>
		<description>now that all the patches are out are you going to release some more details?</description>
		<content:encoded><![CDATA[<p>now that all the patches are out are you going to release some more details?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Inking&#8217;s Blog &#187; Google GMail E-mail Hijack Technique</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-108296</link>
		<dc:creator>Inking&#8217;s Blog &#187; Google GMail E-mail Hijack Technique</dc:creator>
		<pubDate>Sun, 03 Feb 2008 04:56:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-108296</guid>
		<description>[...] my disclosure policy regarding this vulnerability and the one disclosed several days ago concerning PDF. Letâ€™s say that it is just one of my social [...]</description>
		<content:encoded><![CDATA[<p>[...] my disclosure policy regarding this vulnerability and the one disclosed several days ago concerning PDF. Letâ€™s say that it is just one of my social [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Onlinespiele</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-83384</link>
		<dc:creator>Onlinespiele</dc:creator>
		<pubDate>Sat, 08 Dec 2007 17:27:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-83384</guid>
		<description>Are there any reactions from Adobe?</description>
		<content:encoded><![CDATA[<p>Are there any reactions from Adobe?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#187; Mozilla Firefox 2.0.0.8 Universal XSS ZayÄ±flÄ±ÄŸÄ± WWW~TR-SECURiTY~COM:</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-76418</link>
		<dc:creator>&#187; Mozilla Firefox 2.0.0.8 Universal XSS ZayÄ±flÄ±ÄŸÄ± WWW~TR-SECURiTY~COM:</dc:creator>
		<pubDate>Sat, 24 Nov 2007 16:08:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-76418</guid>
		<description>[...] GNUCITIZEN yazarlarÄ±ndan pdp yine bir universal XSS zayÄ±flÄ±ÄŸÄ± bulmuÅŸ.Universal derken, genel olarak bir uygulamadan kaynaklanan ve her yerde geÃ§erli olan anlamÄ±na gelmektedir.Ã–rneÄŸin yakÄ±n zamanda yine pdp Adobe Acrobat PDF dÃ¶kÃ¼manlarÄ±nÄ± aÃ§arken meydana gelen bir universal XSS daha bulmuÅŸtu. [...]</description>
		<content:encoded><![CDATA[<p>[...] GNUCITIZEN yazarlarÄ±ndan pdp yine bir universal XSS zayÄ±flÄ±ÄŸÄ± bulmuÅŸ.Universal derken, genel olarak bir uygulamadan kaynaklanan ve her yerde geÃ§erli olan anlamÄ±na gelmektedir.Ã–rneÄŸin yakÄ±n zamanda yine pdp Adobe Acrobat PDF dÃ¶kÃ¼manlarÄ±nÄ± aÃ§arken meydana gelen bir universal XSS daha bulmuÅŸtu. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sally</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-76345</link>
		<dc:creator>Sally</dc:creator>
		<pubDate>Sat, 24 Nov 2007 10:48:11 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-76345</guid>
		<description>Have you all noticed that the spammer&#039;s choice of delivery has become PDF attachments?

The attached PDF usually contains stock quotes.</description>
		<content:encoded><![CDATA[<p>Have you all noticed that the spammer&#8217;s choice of delivery has become PDF attachments?</p>
<p>The attached PDF usually contains stock quotes.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sally</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-76344</link>
		<dc:creator>Sally</dc:creator>
		<pubDate>Sat, 24 Nov 2007 10:44:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-76344</guid>
		<description>This explains why spammers have now switched to sending their emails with a PDF attachment. Usually the PDF attachment contains an embedded image of a stock quote or something stupid like that. Lately I have been openning these out of curiousity but it seems we should not.</description>
		<content:encoded><![CDATA[<p>This explains why spammers have now switched to sending their emails with a PDF attachment. Usually the PDF attachment contains an embedded image of a stock quote or something stupid like that. Lately I have been openning these out of curiousity but it seems we should not.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ggman</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-71646</link>
		<dc:creator>ggman</dc:creator>
		<pubDate>Thu, 15 Nov 2007 23:45:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-71646</guid>
		<description>@cyanid-E

I opened your pdf on a linux system
via:

1. adobe firefox plugin
2. adobe reader 8.1.1 (&quot;Adobe strongly recommends upgrading to Adobe Reader 8.1.1&quot;)

and evolution offered me to send an email to guys with really strange email adresses:

1. &quot;windows/system32/calc.exe&quot; 
2. test%.. 

- quite scary -</description>
		<content:encoded><![CDATA[<p>@cyanid-E</p>
<p>I opened your pdf on a linux system<br />
via:</p>
<p>1. adobe firefox plugin<br />
2. adobe reader 8.1.1 (&#8220;Adobe strongly recommends upgrading to Adobe Reader 8.1.1&#8243;)</p>
<p>and evolution offered me to send an email to guys with really strange email adresses:</p>
<p>1. &#8220;windows/system32/calc.exe&#8221;<br />
2. test%.. </p>
<p>- quite scary -</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: \-=[WHK]=-// &#187; Archive &#187; ExplicaciÃ³n del comando de ejecuciÃ³n arbitraria en documentos PDF</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-71511</link>
		<dc:creator>\-=[WHK]=-// &#187; Archive &#187; ExplicaciÃ³n del comando de ejecuciÃ³n arbitraria en documentos PDF</dc:creator>
		<pubDate>Thu, 15 Nov 2007 18:55:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-71511</guid>
		<description>[...] http://www.gnucitizen.org/blog/0day-pdf-pwns-windows http://secunia.com/advisories/26201/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://www.gnucitizen.org/blog/0day-pdf-pwns-windows" rel="nofollow">http://www.gnucitizen.org/blog.....ns-windows</a> <a href="http://secunia.com/advisories/26201/" rel="nofollow">http://secunia.com/advisories/26201/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: V0lTr4n Bl0G &#187; El Adobe Reader tiene un serio agujero de seguridad</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-69929</link>
		<dc:creator>V0lTr4n Bl0G &#187; El Adobe Reader tiene un serio agujero de seguridad</dc:creator>
		<pubDate>Tue, 13 Nov 2007 02:20:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-69929</guid>
		<description>[...] SegÃºn el hacker Petko Petkov (Gray hat), existe un agujero de seguridad en Adobe Reader, que con solo abrir un PDF manipulado un hacker podrÃ­a ejecutar un codigo malicioso en nuestros PCs, no dando detalles de la vulnerabilidad.Petkov ha confirmado que este bug afecta a los Windows XP SP2 con las Ãºltimas versiones de Adobe Reader 8.1, 8.0 y 7, aunque no se descarta que otras versiones de Windows estÃ©n afectadas. [...]</description>
		<content:encoded><![CDATA[<p>[...] SegÃºn el hacker Petko Petkov (Gray hat), existe un agujero de seguridad en Adobe Reader, que con solo abrir un PDF manipulado un hacker podrÃ­a ejecutar un codigo malicioso en nuestros PCs, no dando detalles de la vulnerabilidad.Petkov ha confirmado que este bug afecta a los Windows XP SP2 con las Ãºltimas versiones de Adobe Reader 8.1, 8.0 y 7, aunque no se descarta que otras versiones de Windows estÃ©n afectadas. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: XT12D</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-68207</link>
		<dc:creator>XT12D</dc:creator>
		<pubDate>Fri, 09 Nov 2007 19:34:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-68207</guid>
		<description>Bad analogy, Adrian, A better one would be, &quot;Why not hand out vials of HIV tainted blood in the hopes that some freelance doctor will find a cure?&quot;</description>
		<content:encoded><![CDATA[<p>Bad analogy, Adrian, A better one would be, &#8220;Why not hand out vials of HIV tainted blood in the hopes that some freelance doctor will find a cure?&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 0day vulnerability in PDF files could break your windows box &#124; AXT Magazine</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-67439</link>
		<dc:creator>0day vulnerability in PDF files could break your windows box &#124; AXT Magazine</dc:creator>
		<pubDate>Thu, 08 Nov 2007 01:56:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-67439</guid>
		<description>[...] under certain circumstances, a PDF file could remote execute an application on the host machine. The demo video shows how two pdf files, stored on local drive, once they&#8217;re open, can launch another [...]</description>
		<content:encoded><![CDATA[<p>[...] under certain circumstances, a PDF file could remote execute an application on the host machine. The demo video shows how two pdf files, stored on local drive, once they&#8217;re open, can launch another [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: æ–°ä¸€ä»£ç—…æ¯’æ„ŸæŸ“é€”å¾‘-PDF &#171; Jiunn&#8217;s mind + information collection</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-65820</link>
		<dc:creator>æ–°ä¸€ä»£ç—…æ¯’æ„ŸæŸ“é€”å¾‘-PDF &#171; Jiunn&#8217;s mind + information collection</dc:creator>
		<pubDate>Tue, 06 Nov 2007 07:47:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-65820</guid>
		<description>[...] 2007/09/20 PDF pwns Windowsé€™ç¯‡æ–‡ç« ã€‚ [...]</description>
		<content:encoded><![CDATA[<p>[...] 2007/09/20 PDF pwns Windowsé€™ç¯‡æ–‡ç« ã€‚ [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Deeprunner</title>
		<link>http://www.gnucitizen.org/blog/0day-pdf-pwns-windows/comment-page-2/#comment-65222</link>
		<dc:creator>Deeprunner</dc:creator>
		<pubDate>Mon, 05 Nov 2007 04:44:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/0day-pdf-pwns-windows#comment-65222</guid>
		<description>Very Informative and I see We still can&#039;t get along apparently, oh well.  But, being obviously on the lower end of the knowledge curve in this arena...Can any of you human beings tell me what you think of this link&#039;s usefullness regarding these kind of issues? -Vegas</description>
		<content:encoded><![CDATA[<p>Very Informative and I see We still can&#8217;t get along apparently, oh well.  But, being obviously on the lower end of the knowledge curve in this arena&#8230;Can any of you human beings tell me what you think of this link&#8217;s usefullness regarding these kind of issues? -Vegas</p>
]]></content:encoded>
	</item>
</channel>
</rss>

