[Full-disclosure] Universal XSS with PDF files: highly dangerous

Matthew Flaschen matthew.flaschen at gatech.edu
Mon Jan 8 20:29:16 GMT 2007


The Anarcat wrote:
> Anyone knows how this affects opensource PDF viewers like gpdf or
> evince? As I understand this vulnerability, it's only effective
> against embeded PDF readers, right?

I don't know what you mean embedded.  It only affects Adobe Reader 7.

Matthew Flaschen

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 252 bytes
Desc: OpenPGP digital signature
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20070108/176fe2fd/attachment.bin 


Full-Disclosure is hosted and sponsored by Secunia.