You are here: silicon.com > Hardware > PDAs

PDAs

RIM patches PDF security hole

BlackBerry's "highly critical" flaw squashed

Tags: rim, blackberry

By Liam Tung

Published: 23 July 2008 08:37 BST

RIM has released a patch for a security flaw in BlackBerry Enterprise Server, which exposed corporate networks to hackers via a maliciously crafted PDF document.

RIM announced the "highly critical" security advisory two weeks ago, detailing that a booby-trapped PDF could exploit a hole in RIM's server software to gain remote access to corporate networks.

The flaw affected the BlackBerry Attachment Service - a function within BlackBerry Enterprise Server (BES) that is used to process PDF attachments and make them readable by BlackBerry users on that network.

The flaw did not expose BlackBerry devices to attack but could expose email servers on the same network as BES to attack, Sense of Security's principal consultant, Jason Edelstein told silicon.com sister site ZDNet.com.au.

RIM's initial workaround was to prevent the BlackBerry Attachment Service from processing PDF files within the BlackBerry Enterprise Server, however, a patch is now available from RIM's website.

Original article: RIM issues critical BlackBerry patch from ZDNet Australia

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Seb Janacek Minority Report: Here come the iPhone competitors Should Apple be afraid?

Peter Cochrane Peter Cochrane's Blog: Screen time Will the smaller screen take over - just as the PC eclipsed TV?


  • Jobs
1st/2nd Level IT Support Analyst(BES Server,helpdesk,desktop)FINANCIAL

The ideal candidate MUST have current experience in a 1st/2nd level support role & have enterprise awareness preferably Symantec or anti-virus, have ...

Senior Infrastructure Engineer-45kCentral LondonWindows Servers

Blackberry enterprise server knowledge. My key client is offering a 45k salary alongside with a great package for a senior infrastructure engineer. ...

VB.net Developer - urgent requirement

CSS/Photoshop (no design experience necessary - just experience in cutting up visuals and taking photohop files and applying it to the website). ...

Agenda Setters 2008
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: