This application requires Javascript for optimal performance.

Adobe.Photoshop.CS4.TIFF.File.Processing.Code.Execution

Release Date

May 05, 2010

Severity

critical

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt to exploit a remote code-execution vulnerability in Adobe Photoshop.

The vulnerability is caused by an error when parsing a crafted TIFF image. A remote attacker may exploit this to execute arbitrary code.

Affected Products

Adobe Photoshop CS4 version 11.0.0

Recommended Actions

Refer to the vendor's web site for the suggested workaround:
http://www.adobe.com/support/security/bulletins/apsb10-10.html

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2010-1279

Reference/s

http://www.adobe.com/support/security/bulletins/apsb10-10.html
http://www.securityfocus.com/bid/39849 (BugTraq)

Reference: VID-22908