Adobe Acrobat and Reader Security Update

This page has been updated as recent security vulnerabilities were discovered:

- August 28, 2009
- June 23, 2009
- May 28, 2009
- November 6, 2009

Important Security Information

A security vulnerability has been detected in Adobe Acrobat and Reader, versions 9.1.1 and earlier. This vulnerability can cause Acrobat or Reader to crash and permit an attacker to take control of your computer. Further details are available at: http://www.adobe.com/security.

These security patches only apply to Acrobat Pro and Reader, not any other Creative Suite products (such as Dreamweaver or InDesign). If you use both Acrobat Pro and Reader, BOTH require upgrading.

What Version of the Software Do I Have?

Acrobat Pro permits you to create and edit PDFs, whereas Reader only permits you to view PDF files. Adobe CS2 and CS3 Design Premium provide Acrobat Pro as part of the suite, however, Acrobat Pro has been intentionally omitted from the Adobe CS4 suite that Brown currently distributes. To determine which version of Acrobat you have installed:

  • If you are a Windows user, launch Acrobat Pro and click on the Help menu. If the "check for updates" option is either grayed out or absent from the menu, you have the keyed (on-campus use) copy of Acrobat Pro.
  • If you are a Macintosh user, disconnect the ethernet cable from your computer. Then attempt to launch Acrobat Pro. If Acrobat fails to launch, you have the keyed (on-campus use) copy of Acrobat Pro.

If the above conditions are not met, you likely have the unkeyed (off-campus use) version of Acrobat Pro. Follow the instructions in the section titled "Off-Campus (Unkeyed) Acrobat Pro Users" below.

What Should I Do?

To prevent your computer from being compromised, CIS recommends that all users with Adobe Acrobat Pro and/or Reader installed upgrade to version 9.2 if possible. If your hardware specifications do not support this latest version, locate the section on this page for your version of Acrobat or Creative Suite and apply the essential security patches to Acrobat Pro and/or Reader.

  1. Users of any version of Acrobat should confirm that they are running current Symantec AntiVirus definitions.
  2. As a general practice, do not open files from unknown or untrusted sources.
  3. If your computer meets the system requirements to run Adobe Acrobat version 9.2, it is strongly recommended that you upgrade to that version immediately.
    • Macintosh: G4+ processor, 10.4.11+ Mac OS and 256 MB RAM (minimum) - 512 MB RAM recommended
    • Windows: 1.3GHz processor and 256 MB RAM (minimum) - 512 MB RAM recommended

Click on the link below that relates to your version of Acrobat and follow the instructions provided in that section.

Adobe Acrobat Reader and Pro Version 9

  1. Confirm that your Symantec AntiVirus definitions are current.
  2. If your system meets the hardware requirements, download and install Adobe Acrobat Reader and Pro 9.2 using the links provided below.
    • Macintosh: G4+ processor, 10.4.11+ Mac OS and 256 MB RAM (minimum) - 512 MB RAM recommended
    • Windows: 1.3GHz processor and 256 MB RAM (minimum) - 512 MB RAM recommended

If you use BOTH Acrobat Pro and Reader, install them in the order presented here:

Macintosh

For complete Acrobat Reader security, users of Acrobat Reader version 9 must update to version 9.2. Download and install the latest version 9 security patch, Adobe Version 9.2 update for your computer (Intel or PPC).

Based on your type of Apple hardware, use the following link to select and download each of the updates you need:

To upgrade your keyed version of Acrobat Pro to the most current version, follow the instructions here:

If upgrading to version 9 is not an option, follow the instructions below for earlier Acrobat versions.

Windows

For complete Acrobat Reader security, users of Acrobat Reader version 9.0 must update to version 9.2. Depending on your version of Acrobat Reader, you may need to apply one or all of these updates in the order presented:

  1. If your version of Adobe Acrobat Reader is 9.0 or 9.1:

To upgrade your keyed version of Acrobat Pro to the most current version, follow the instructions here:

If upgrading to version 9 is not an option, follow the instructions below for earlier Acrobat versions.

Adobe Acrobat Pro 8 and Adobe CS3 Users

Macintosh

Windows

For complete Acrobat Pro security, users of Acrobat Pro version 8 must update to version 8.1.7. Depending on your version of Acrobat Pro, you may need to apply one or all of these updates in the order presented:

  1. If your version of Adobe Acrobat Pro is 8.1.2:
  2. If your version of Adobe Acrobat Pro is 8.1.3:
  3. If your version of Adobe Acrobat Pro is 8.1.4:
  4. If your version of Adobe Acrobat Pro is 8.1.5
  5. If your version of Adobe Acrobat Pro is 8.1.6

You may be prompted to restart your computer after each patch is applied. Restart if requested.

Adobe Acrobat Pro 7 and Adobe CS2 Users

Macintosh

Windows

For complete Acrobat Pro security, users of Acrobat Pro version 7 must update to version 7.1.4. Depending on your version of Acrobat Pro, you may need to apply one or all of these updates in the order presented:

  1. If Acrobat Pro or Reader is open, quit the program.
  2. If your version of Adobe Acrobat Pro is 7.0
  3. If your version of Adobe Acrobat Pro is 7.1
  4. If your version of Adobe Acrobat Pro is 7.1.1
  5. If your version of Adobe Acrobat Pro is 7.1.2
  6. If your version of Adobe Acrobat Pro is 7.1.3

You may be prompted to restart your computer after each patch is applied. Restart if requested.

Note: Limited testing has been performed on Acrobat Pro 7 and CS2 due to obsolescence of the software. Both are unsupported by CIS. If you have an older operating system and need assistance with upgrading, please contact your DCC or the Help Desk.

Off-Campus (Unkeyed) Acrobat Pro Users

For further information, please contact the Brown Help Desk (863-HELP or help@brown.edu).


Return to Software Distribution page
Last Reviewed: Friday, 06-Nov-2009 07:58:12 EST by Software_Services