Skip to main content

Adobe Reader and Acrobat Multiple Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2009 4551 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Adobe Reader and Acrobat, which could be exploited by attackers to compromise a vulnerable system. These issues are caused by memory corruption errors, and integer and heap overflows in the JBIG2 filter and within the handling of PDF data, which could be exploited by attackers to execute arbitrary code by tricking a user into opening a specially crafted PDF document.


Impact

  • Remote Code Execution

System / Technologies affected

  • Adobe Reader versions prior to 9.1.2
  • Adobe Reader versions prior to 8.1.6
  • Adobe Reader versions prior to 7.1.3
  • Adobe Acrobat Standard versions prior to 9.1.2
  • Adobe Acrobat Pro versions prior to 9.1.2
  • Adobe Acrobat Pro Extended versions prior to 9.1.2
  • Adobe Acrobat versions prior to 8.1.6
  • Adobe Acrobat versions prior to 7.1.3

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Upgrade to Adobe Reader and Acrobat version 9.1.2, 8.1.6 and 7.1.3 :
    http://www.adobe.com/support/security/bulletins/apsb09-07.html

  • Vulnerability Identifier


    Source


    Related Link