We've just across a new use of CVE-2011-0609, formerly only seen in XLS files, now used in a PDF file sent in a targeted email attack.
Filename: 民進黨2012+年....pdf (translates as DPP 2012 and beyond - DPP is Taiwan's Democratic Progressive Party)
PDF Object 2 contains a SWF file MD5 40792ec6d7b7f66e71a3fdf2e58cb432 subtlety named "~CVE-2011-0609.swf". Decompressing the CWS to FWS gives the MD5 00cf8b68cce68a6254b6206f250540fd.
View the sample in PDF Examiner. Updating to the latest Flash 10.2.152.33 and Reader 9.4.2 mitigates this threat. We'll make the sample available to AV companies if requested.
For information on other current threats, see our PDF Threats and Document Threats pages.