Adobe Acrobat and Reader SING 'uniqueName' Buffer Overflow Vulnerability (Win)
Resumen:
Check for the version of Adobe Reader/Acrobat
Descripción:
Overview: This host is installed with Adobe Reader/Acrobat and is prone to buffer overflow vulnerability
Vulnerability Insight: The flaw is due to a boundary error within 'CoolType.dll' when processing the 'uniqueName' entry of SING tables in fonts.
Impact: Successful exploitation will let attackers to crash an affected application or execute arbitrary code by tricking a user into opening a specially crafted PDF document.
Impact Level: Application
Affected Software/OS: Adobe Reader version 9.3.4 and prior. Adobe Acrobat version 9.3.4 and prior on windows.
Fix: No solution or patch is available as of 13th Semtember, 2010. Information regarding this issue will be updated once the solution details are available For updates refer to http://www.adobe.com