Technology briefs

Adobe PDF bug jeopardizes security

The Adobe PDF could be used to compromise a system running on Microsoft Windows XP, Adobe confirmed last week week.

Remote code embedded in a PDF could be executed in Versions 8.1 and earlier of Adobe Reader, Adobe Acrobat or Acrobat Elements. Adobe Acrobat 3D is also vulnerable. All those programs must be used in conjunction with Internet Explorer 7 to trigger the exploitation.

According to the SANS Institute, which announced news of the vulnerability last month, the vulnerability stems from the failure of the software to properly handle Web addresses embedded in the document. A malicious hacker could embed a PDF with a URL that could start other programs on the machine or execute other operations.

Adobe has not yet issued a patch correcting the problem, but it has offered instructions on how to modify the Windows XP registry settings to correct the vulnerability.

Metal shavings could be the cause of failures

Experiencing a mysterious surge in equipment failure in your data center? The culprit may be microscopic metallic shavings, NASA Goddard Space Flight Center researchers warned. “For data centers, it is a serious problem,” said NASA chief parts engineer Henning Leidecker, who is part of a research team tracking the problem. “More serious than many know about.”

The researchers are looking at how aging or inexpensively produced hardware can shed tiny conductive filaments of zinc typically less than a few millimeters long, known as zinc whiskers. Because they are conductive, such whiskers can short-circuit electronic equipment if they gather in sensitive regions of the equipment.

Usually it can take decades for a data center to collect a dangerous number of whiskers, and as many data centers age, the risk will

Zinc whiskers may come from a variety of sources. They mostly come from raised-floor tiles. Screws, nuts, washers and bus rails can be sources, too. The whiskers may be created through the movement of equipment or floor tiles, nicks and scrapes to the material, unequal thermal expansion, bending of the material or defects in the manufacturing process.

Despite their diminutive stature, the filings can cause big problems. Colorado reported that in 2005, a data center had been off-line for 30 days because zinc whiskers from floor tiles were blown by the air conditioning system into computers, shorting many of them.

GAO calls for additional testing of voting machines

The Government Accountability Office called for additional testing of voting machines used during the 2006 Florida general election to provide further assurance that the technology used did not contribute to the undervote in the state’s 13th District. The agency issued its statement to a special congressional task force now studying why that election produced an unusually large number of ballots that were cast but did not show a valid candidate choice.

GAO issued the information in an Oct. 2 statement to the House Administration Committee’s Task Force on Florida’s District 13 Election.

Nabajyoti Barkakati, GAO’s senior-level technologist for applied research and methods, conducted the election system analysis. He found that prior tests and reviews of Sarasota County’s voting systems didn’t completely rule out the possibility that the voting systems contributed to the undervote.

Sarasota County, part of Florida’s 13th District, used iVotronic direct-recording electronic voting systems (DREs) and the Unity election management system, manufactured by Election Systems and Software. The GAO statement added that additional tests might not completely eliminate the possibility that the machines helped cause the undervote.

“Although the proposed tests could help provide increased assurance, they would not provide absolute assurance that the iVontronic DREs did not cause the large undervote in Sarasota County,” GAO said. Absolute assurance is impossible, Barkakati said, because tests cannot recreate the election conditions.

Read more technology news on Government Computer News’ Web site at

FCW in Print

In the latest issue: Looking back on three decades of big stories in federal IT.


  • Anne Rung -- Commerce Department Photo

    Exit interview with Anne Rung

    The government's departing top acquisition official said she leaves behind a solid foundation on which to build more effective and efficient federal IT.

  • Charles Phalen

    Administration appoints first head of NBIB

    The National Background Investigations Bureau announced the appointment of its first director as the agency prepares to take over processing government background checks.

  • Sen. James Lankford (R-Okla.)

    Senator: Rigid hiring process pushes millennials from federal work

    Sen. James Lankford (R-Okla.) said agencies are missing out on younger workers because of the government's rigidity, particularly its protracted hiring process.

  • FCW @ 30 GPS

    FCW @ 30

    Since 1987, FCW has covered it all -- the major contracts, the disruptive technologies, the picayune scandals and the many, many people who make federal IT function. Here's a look back at six of the most significant stories.

  • Shutterstock image.

    A 'minibus' appropriations package could be in the cards

    A short-term funding bill is expected by Sept. 30 to keep the federal government operating through early December, but after that the options get more complicated.

  • Defense Secretary Ash Carter speaks at the TechCrunch Disrupt conference in San Francisco

    DOD launches new tech hub in Austin

    The DOD is opening a new Defense Innovation Unit Experimental office in Austin, Texas, while Congress debates legislation that could defund DIUx.

Reader comments

Please post your comments here. Comments are moderated, so they may not appear immediately after submitting. We will not post comments that we consider abusive or off-topic.

Please type the letters/numbers you see above

More from 1105 Public Sector Media Group