This application requires Javascript for optimal performance.

Adobe.Acrobat.JBIG2.Stream.Indexing.Overflow

Release Date

Feb 09, 2011

Severity

critical

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attempt to exploit a memory-corruption vulnerability in the Adobe PDF Reader JavaScript engine.

By passing crafted JBIG2 Image Stream, an attacker can execute arbitrary code on a vulnerable computer. To exploit this the attacker must trick the victim into opening a maliciously crafted PDF document.

Affected Products

Adobe Acrobat Standard older than 7.1.1
Adobe Acrobat Standard older than 8.1.4
Adobe Acrobat Standard older than 9.1

Recommended Actions

Apply the most recent upgrades or patches from the vendor:
http://www.adobe.com/support/downloads/product.jsp?product=10&platform=Windows

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-0658

Reference/s

http://www.adobe.com/support/security/advisories/apsa09-01.html

Reference: VID-25061