See:
For a fresh writeup on a buffer overflow affecting one
of the plugins. We'll have to wait and see if any antivirus vendors come
up with a signature for an exploit of this vulnerability. If so, it would
no longer be prudent to have this in your virus.cfg :
SKIPEXT PDF
Note that this may never turn into an in-the-wild
exploit, just as the only previous vulnerability for embedding a virus in a PDF
was never in the wild.
Andrew 8)
