Threat Monitor
« Back to list
Troj.Exploit.W32.PDF-URI.o
| Aliases: | |
|---|
| Pattern: | 200912251330 |
|---|
| Threat Type | Propagation Methods | Systems Affected | Risk Level |
| | | - Windows NT
- Windows XP
- Windows 2000
- Windows 95/98/ME
- MS-DOS
- Other
| |
Adobe Acrobat and Reader are prone to a remote code-execution vulnerability CVE-2009-0927.
When supplying a specially crafted argument to the getIcon() method of a Collab object, proper bounds checking is not performed resulting in a stack overflow. By persuading a victim to open a specially-crafted PDF file, a remote attacker could exploit this vulnerability to overflow a buffer and execute arbitrary code on the system with the privileges of the victim.
Affected Version: Reader and Acrobat 7.1 and prior
Reader and Acrobat 8.1.2 and prior
Reader and Acrobat 9
Back to Top