CVE-2005-2470Improper Restriction of Operations within the Bounds of a Memory Buffer in Adobe Acrobat

4 documents4 sources
Severity
7.5HIGHNVD
EPSS
5.6%
top 9.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 16
Latest updateMay 1

Description

Buffer overflow in a "core application plug-in" for Adobe Reader 5.1 through 7.0.2 and Acrobat 5.0 through 7.0.2 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

NVDadobe/acrobat_reader8 versions+7
NVDadobe/acrobat8 versions+7

Patches

🔴Vulnerability Details

1
GHSA
GHSA-hwgj-863p-rf77: Buffer overflow in a "core application plug-in" for Adobe Reader 52022-05-01

📋Vendor Advisories

1
Red Hat
security flaw2005-08-16

💬Community

1
Bugzilla
CVE-2005-2470 security flaw2018-08-16
CVE-2005-2470 — Adobe Acrobat vulnerability | cvebase