BlackBerry BES Update Fixes Vulnerabilities in the PDF Distiller

RIMLogo.jpg

RIM issued another update to deal with problems with BlackBerry Attachment Service and PDF files on BlackBerry Enterprise Server (BES). There notice is titled "Vulnerabilities in the PDF distiller of the BlackBerry Attachment Service for the BlackBerry Enterprise Server."

Flaws in the BES PDF distiller may allow attackers to distribute
messages with malicious PDF files attached that when opened with a 
BlackBerry, may lead to device memory corruption and possible malicious code executed on networks hosting the BES
Blackberry Attachment Service.

These vulnerabilities each have a Common Vulnerability Scoring System (CVSS) score of 9.3.

BES users should download a interim fix.  BlackBerry Professional software users can find more information here.