Skip to main content

Adobe Acrobat and Reader "authplay.dll" Code Execution Vulnerability

Last Update Date: 28 Jan 2011 Release Date: 29 Oct 2010 4904 Views

RISK: Medium Risk

A vulnerability has been identified in Adobe Acrobat and Reader, which could be exploited by remote attackers to execute arbitrary code. This issue is caused by a memory corruption error in the "authplay.dll" module when processing malformed Flash content within a PDF document, which could be exploited by attackers to compromise a vulnerable system by tricking a user into opening a specially crafted PDF file.

This vulnerability is exploited in the wild.


Impact

  • Remote Code Execution

System / Technologies affected

  • Adobe Reader versions 9.0 through 9.4 (Windows, Macintosh and UNIX)
  • Adobe Acrobat versions 9.0 through 9.4 (Windows and Macintosh)

Solutions

  • There is no patch available for this vulnerability currently.


Vulnerability Identifier


Source


Related Link