Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.63640
Categoría:Red Hat Local Security Checks
Título:RedHat Security Advisory RHSA-2009:0376
Resumen:The remote host is missing updates announced in;advisory RHSA-2009:0376.;;Adobe Reader allows users to view and print documents in Portable Document;Format (PDF).;;Multiple input validation flaws were discovered in the JBIG2 compressed;images decoder used by Adobe Reader. A malicious PDF file could cause Adobe;Reader to crash or, potentially, execute arbitrary code as the user running;Adobe Reader. (CVE-2009-0193, CVE-2009-0658, CVE-2009-0928, CVE-2009-1061,;CVE-2009-1062);;All Adobe Reader users should install these updated packages. They contain;Adobe Reader version 8.1.4, which is not vulnerable to these issues. All;running instances of Adobe Reader must be restarted for the update to take;effect.
Descripción:Summary:
The remote host is missing updates announced in
advisory RHSA-2009:0376.

Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

Multiple input validation flaws were discovered in the JBIG2 compressed
images decoder used by Adobe Reader. A malicious PDF file could cause Adobe
Reader to crash or, potentially, execute arbitrary code as the user running
Adobe Reader. (CVE-2009-0193, CVE-2009-0658, CVE-2009-0928, CVE-2009-1061,
CVE-2009-1062)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 8.1.4, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2009-0193
BugTraq ID: 34229
http://www.securityfocus.com/bid/34229
Bugtraq: 20090325 Secunia Research: Adobe Reader JBIG2 Symbol Dictionary Buffer Overflow (Google Search)
http://www.securityfocus.com/archive/1/502155/100/0/threaded
http://security.gentoo.org/glsa/glsa-200904-17.xml
http://secunia.com/secunia_research/2009-14/
http://www.redhat.com/support/errata/RHSA-2009-0376.html
http://www.securitytracker.com/id?1021892
http://secunia.com/advisories/34392
http://secunia.com/advisories/34490
http://secunia.com/advisories/34706
http://secunia.com/advisories/34790
http://sunsolve.sun.com/search/document.do?assetkey=1-66-256788-1
SuSE Security Announcement: SUSE-SA:2009:014 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00005.html
SuSE Security Announcement: SUSE-SR:2009:009 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00010.html
http://www.vupen.com/english/advisories/2009/1019
Common Vulnerability Exposure (CVE) ID: CVE-2009-0658
BugTraq ID: 33751
http://www.securityfocus.com/bid/33751
Cert/CC Advisory: TA09-051A
http://www.us-cert.gov/cas/techalerts/TA09-051A.html
CERT/CC vulnerability note: VU#905281
http://www.kb.cert.org/vuls/id/905281
https://www.exploit-db.com/exploits/8090
https://www.exploit-db.com/exploits/8099
http://www.vupen.com/english/advisories/2009/0472
http://isc.sans.org/diary.html?n&storyid=5902
http://www.shadowserver.org/wiki/pmwiki.php?n=Calendar.20090219
http://www.symantec.com/security_response/writeup.jsp?docid=2009-021212-5523-99&tabid=2
http://osvdb.org/52073
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5697
http://www.securitytracker.com/id?1021739
http://secunia.com/advisories/33901
XForce ISS Database: adobe-acrobat-reader-image-bo(48825)
https://exchange.xforce.ibmcloud.com/vulnerabilities/48825
Common Vulnerability Exposure (CVE) ID: CVE-2009-0928
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=776
Common Vulnerability Exposure (CVE) ID: CVE-2009-1061
Common Vulnerability Exposure (CVE) ID: CVE-2009-1062
http://www.ivizsecurity.com/security-advisory-iviz-sr-09001.html
CopyrightCopyright (C) 2009 E-Soft Inc.

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.