CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
AI Score
Confidence
Low
EPSS
Percentile
98.4%
The Bitmap parsing component in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a crafted image that causes an invalid pointer calculation related to 4/8-bit RLE compression, a different vulnerability than CVE-2011-0596, CVE-2011-0598, and CVE-2011-0602.
Vendor | Product | Version | CPE |
---|---|---|---|
adobe | acrobat_reader | 8.0 | cpe:2.3:a:adobe:acrobat_reader:8.0:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.1 | cpe:2.3:a:adobe:acrobat_reader:8.1:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.1.1 | cpe:2.3:a:adobe:acrobat_reader:8.1.1:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.1.2 | cpe:2.3:a:adobe:acrobat_reader:8.1.2:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.1.4 | cpe:2.3:a:adobe:acrobat_reader:8.1.4:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.1.5 | cpe:2.3:a:adobe:acrobat_reader:8.1.5:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.1.6 | cpe:2.3:a:adobe:acrobat_reader:8.1.6:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.1.7 | cpe:2.3:a:adobe:acrobat_reader:8.1.7:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.2 | cpe:2.3:a:adobe:acrobat_reader:8.2:*:*:*:*:*:*:* |
adobe | acrobat_reader | 8.2.1 | cpe:2.3:a:adobe:acrobat_reader:8.2.1:*:*:*:*:*:*:* |
secunia.com/advisories/43470
www.adobe.com/support/security/bulletins/apsb11-03.html
www.redhat.com/support/errata/RHSA-2011-0301.html
www.securityfocus.com/archive/1/516314
www.securityfocus.com/bid/46220
www.securitytracker.com/id?1025033
www.vupen.com/english/advisories/2011/0337
www.vupen.com/english/advisories/2011/0492
www.zerodayinitiative.com/advisories/ZDI-11-072/
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12424