Secunia Logo  


Secunia PSI WorldMap
 
Adobe Reader/Acrobat Multiple Vulnerabilities
Secunia Advisory: SA36983
Release Date: 2009-10-09
Last Update: 2009-10-28
Popularity: 20,555 views

Critical:
Extremely critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

Software:Adobe Acrobat 3D 8.x
Adobe Acrobat 7 Professional
Adobe Acrobat 7.x
Adobe Acrobat 8 Professional
Adobe Acrobat 8.x
Adobe Acrobat 9.x
Adobe Reader 7.x
Adobe Reader 8.x
Adobe Reader 9.x

Binary Analysis: BA865 :: Available for 1 Credit
BA873 :: Available for 2 Credits
BA874 :: Available for 1 Credit
BA872 :: Available for 2 Credits
BA814 :: Available for 2 Credits

Secunia CVSS-2 Score: Available in Secunia business solutions

Subscribe: Instant alerts on relevant vulnerabilities


Advisory Content (Page 1 of 3)[ 1 ] [ 2 ] [ 3 ]

Description:
Multiple vulnerabilities have been reported in Adobe Reader and Acrobat, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, or compromise a user's system.

1) An unspecified error can be exploited to cause a heap-based buffer overflow and execute arbitrary code.

NOTE: This vulnerability is currently being actively exploited.

2) An array indexing error in the processing of Compact Font Format streams can be exploited to corrupt memory.

3) Multiple unspecified errors can be exploited to cause heap-based buffer overflows.

4) An array indexing error in the parsing of U3D files embedded in a PDF file can be exploited to corrupt memory.

5) A use-after-free error in the Firefox plugin can be exploited to trigger usage of uninitialised memory when the plugin is unloaded.

6) A vulnerability exists due to the application not enforcing "Privileged Context" and "Safe Path" restrictions on certain JavaScript methods. This can be exploited to write arbitrary files to arbitrary locations.

7) An array indexing error in the processing of U3D data can be exploited to corrupt memory and execute arbitrary code.

8) An unspecified error can be exploited to cause a heap-based buffer overflow.

9) Two input validation errors can be exploited to execute arbitrary code.

10) An unspecified error can be exploited to corrupt memory.

11) An integer overflow error exists in the processing of BMP files. This can be exploited to cause a heap-based buffer overflow by tricking a user into converting a specially crafted BMP file to PDF.

12) An error when loading and unloading certain COM objects can be exploited to corrupt memory.

13) An integer overflow error can be exploited to cause a crash and potentially execute arbitrary code.

14) An unspecified error in the JavaScript implementation can be exploited to corrupt memory and potentially execute arbitrary code.

15) A format string error can be exploited to execute arbitrary code on UNIX platforms.

Successful exploitation requires that the debug mode is enabled.

16) An unspecified error in the image decoder can be exploited to cause a crash and potentially execute arbitrary code.

Successful exploitation of these vulnerabilities allows execution of arbitrary code.

17) An input validation error can potentially be exploited to bypass Trust Manager restrictions.

18) An unspecified error can be exploited to bypass file extension security controls.

19) Some vulnerabilities in the browser plugin can be exploited by malicious people to conduct cross-site scripting attacks.

For more information:
SA23483

Change Page:
[ 1 ] [ 2 ] [ 3 ]



Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

20th Nov, 2009
New advisories: 9
New vulnerabilities: 25
Updated advisories: 10

Highly // 394 views
SUSE update for java-1_6_0-sun
Moderately // 775 views
PHP Multiple Vulnerabilities

19th Nov, 2009
New advisories: 23
New vulnerabilities: 35
Updated advisories: 29


Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Kaspersky Anti-Virus 2010 klavemu.kdl Denial of Service Vulnerability // 63 views
2. Internet Explorer Charset Inheritance Cross-Site Scripting Vulnerability // 50 views
3. Sun Java JDK / JRE Multiple Vulnerabilities // 46 views
4. Adobe Flash Player Multiple Vulnerabilities // 45 views
5. Adobe Reader/Acrobat Multiple Vulnerabilities // 35 views
6. Google Chrome Cross-Origin Resource Sharing Security Bypass // 19 views
7. Mozilla Firefox Multiple Vulnerabilities // 18 views
8. Microsoft Internet Explorer Multiple Vulnerabilities // 15 views
9. Microsoft Windows Win32k Kernel-Mode Driver Multiple Vulnerabilities // 15 views
10. Opera Floating Point Number Processing Memory Corruption // 14 views