Heap-based buffer overflow in the JBIG2 filter in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted PDF file that contains JBIG2 text region segments with Huffman encoding.
CVSS Details
- CVSS 3.1 Base Score: 7.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Adobe Reader Apsb09 07 | — | — | Apr 12, 2012 | Jun 11, 2009 |
| Gentoo Linux | — | Upgrade app-text/acroread. | Oct 30, 2017 | Jun 11, 2009 |
| Suse | — | Upgrade acroread | Feb 17, 2015 | Jun 11, 2009 |
| Ubuntu | — | Upgrade acroread | Nov 19, 2024 | Jun 11, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub