Threat Monitor
« Back to list
Troj.Exploit.JS.PDF.al
| Aliases: | |
|---|
| Pattern: | 201002231330 |
|---|
| Threat Type | Propagation Methods | Systems Affected | Risk Level |
| | | - Windows NT
- Windows XP
- Windows 2000
- Windows 95/98/ME
- MS-DOS
- Other
| |
Adobe Reader and Acrobat is prone to a use-after-free vulnerability.
This issue is caused by a use-after-free error in the newplayer() method of the Doc.media object, which can result in an exploitable memory access violation.
An attacker could exploit the vulnerabilitie by persuading a user to open a specially crafted PDF file.
The Adobe Reader browser plug-in is available for multiple web browsers and operating systems, which can automatically open PDF documents hosted on a website.
This issue allow an attacker to execute arbitrary code and take control of the affected system.
Back to Top