Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  ADOBE : Acrobat Reader 8.0
  ADOBE : Acrobat Reader 6.0
  ADOBE : Acrobat Reader 5.0
  ADOBE : Acrobat Reader 5.1
  ADOBE : Acrobat Reader 4.05
  ADOBE : Acrobat Reader 4.0
  ADOBE : Acrobat Reader 3.0
Name:ADOBE : Acrobat Reader 7.0

 Multiple PDF library PDF parsing DoS
updated since 18.01.2007
document Infinite loop on page model tree parsing.
7!Adobe Reader buffer overflow
document Heap buffer overflow on PDF parsing.
7!Adobe reader plugin PDF files universal crossite scripting
updated since 03.01.2007
document 1. By using URIs like http://path/to/pdf/file.pdf#whatever_name_you_want=javascript:your_code_here it's possible to execute code in context of any Web site where at least one PDF is stored. 2. By using "trigger action" in PDF document it's possible to execute code in context of the web page where document is stored. There are also more bugs exploitable thorugh a web page.
7!Multiple PDF parsing library security vulnerabilities
updated since 22.10.2004
document Multiple vulnerabilities including heap corruption, buffer overflows.
 Adobe Acrobat Reader local files access
updated since 17.06.2005
document By using XML External Entity document script can access local files and have them sent to remote site.
 Adobe Acrobat Reader ActiveX information leak
document It's possible to check file existance with LoadFile method.
 Adobe Acrobat Reader file information leak
document It's possible to enumerate files.
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server