Vulnerability Research - Adobe Patches Illustrator Security Flaws - eWeek Security Watch

Adobe Patches Illustrator Security Flaws

Written By
Brian Prince
Brian Prince
Jan 8, 2010
1 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

Adobe Systems on Jan. 7 issued a fix for two security vulnerabilities affecting its Illustrator CS4 and CS3 software.

The patch is actually a day ahead of the company’s self-imposed deadline. The fix addresses critical buffer overflow vulnerabilities impacting Adobe Illustrator CS4 (14.0.0) and CS3 (13.0.3 and earlier) on Windows and Mac operating systems. According to Adobe, the vulnerabilities could lead to arbitrary code execution.

Proof-of-concept code targeting one of the vulnerabilities, CVE-2009-4195, surfaced in December. The fixes come just days before Adobe is expected to push a fix for a zero-day bug affecting Adobe Reader and Acrobat.

For its part, Adobe is well aware that attackers have the company in their crosshairs. In an interview earlier the week of Jan. 4, Adobe security chief Brad Arkin said the company is in the midst of rolling out an automatic updater to push out security patches and would continue to look for ways to tighten its security.

“Given the relative ubiquity and cross-platform reach of many of our products, in particular our clients, Adobe has attracted–and will likely continue to attract–increasing attention from attackers,” said Arkin, Adobe’s director of product security and privacy. “However, Adobe employs industry-leading security software engineering practices and processes in building our products and responding to security issues, and the security of our customers will always be a critical priority for Adobe.”

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.