CVE-2012-0774Adobe Acrobat vulnerability

CWE-1894 documents4 sources
Severity
10.0CRITICALNVD
EPSS
36.8%
top 2.84%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 10
Latest updateMay 14

Description

Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.1 and 10.x before 10.1.3 allows attackers to execute arbitrary code via a crafted TrueType font.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

NVDadobe/acrobat_reader20 versions+19
NVDadobe/acrobat27 versions+26

Patches

🔴Vulnerability Details

1
GHSA
GHSA-633j-5998-rq95: Integer overflow in Adobe Reader and Acrobat 92022-05-14

📋Vendor Advisories

1
Red Hat
acroread: multiple unspecified flaws (APSB12-08, APSB12-01)2012-04-05

💬Community

1
Bugzilla
CVE-2011-4370 CVE-2011-4371 CVE-2011-4372 CVE-2011-4373 CVE-2012-0774 CVE-2012-0775 CVE-2012-0777 acroread: multiple unspecified flaws (APSB12-08, APSB12-01)2012-04-05
CVE-2012-0774 — Adobe Acrobat vulnerability | cvebase