Advertisement






Adobe Reader XI Heap Overflow

CVE Category Price Severity
N/A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer $10,000 Critical
Author Risk Exploitation Type Date
Unknown High Local 2013-01-30
CPE
cpe:cpe:/a:adobe:reader:11.0.0.0
CVSS EPSS EPSSP
CVSS:4.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: http://cxsecurity.com/ascii/WLB-2013010224

Below is a copy:

1. OVERVIEW

Adobe Reader XI versions are vulnerable to a heap overflow

2. BACKGROUND

Adobe Reader software is the free trusted standard for reliably viewing, printing, and annotating PDF documents. It's the only PDF file viewer that can open and interact with all types of PDF content, including forms and multimedia.

3. VULNERABILITY DESCRIPTION

A specially crafted PDF file may result in a heap overflow, corrupting the heap and potentially allowing code execution. The flaw is due to allocating predefined heap space for an object in the PDF format, which may be bigger than anticipated.

4. VERSIONS AFFECTED

11.x

5. SOLUTION

The vendor is fixing this issue

6. CREDIT

Nisso Kalim ~~~DEMO hackers~~~


Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum