|
| HOMEPAGE | INDICE FORUM | REGOLAMENTO | ::. | NEI PREFERITI | .:: | RSS Forum | RSS News | NEWS web | NEWS software | |
| PUBBLICITA' | | | ARTICOLI | WIN XP | VISTA | WIN 7 | REGISTRI | SOFTWARE | MANUALI | RECENSIONI | LINUX | HUMOR | HARDWARE | DOWNLOAD | | | CERCA nel FORUM » | |
![]() |
#1 |
Gold Member
Top Poster
Registrato: 26-08-2000
Loc.: tokyo city
Messaggi: 8.374
![]() |
Adobe Acrobat Reader ActiveX Control Buffer Overflow Vulnerability
Rafel Ivgi has reported a vulnerability in Adobe Acrobat Reader, which potentially can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error within the "pdf.ocx" ActiveX component supplied with Adobe Acrobat Reader. This can e.g. be exploited via a malicious website using a specially crafted URL to potentially execute arbitrary code. Example: http://[host]/[directory]/[existing_pdf].pdf%00[long_string] NOTE: This only works on servers, which truncate the URL before the "%00" sequence (e.g. IIS and Netscape Enterprise). The vulnerability has been reported in version 5.0.5. Other versions may also be affected. Info: http://secunia.com/advisories/12303/ |
![]() |
![]() |
![]() |
Utenti attualmente attivi che stanno leggendo questa discussione: 1 (0 utenti e 1 ospiti) | |
|
|
![]() |
||||
Discussione | Autore discussione | Forum | Risposte | Ultimo messaggio |
Adobe Acrobat 8.0 | Gervy | Archivio News Software | 6 | 05-11-2006 21.45.20 |
Adobe Acrobat Reader 7 | Gervy | Archivio News Software | 17 | 23-12-2004 17.35.14 |
Adobe Reader / Adobe Acrobat Multiple Vulnerabilities | Giorgius | Sicurezza&Privacy | 0 | 18-12-2004 02.19.36 |
Adobe Reader 6.0.3 agg. | Thor | Archivio News Software | 1 | 15-12-2004 19.08.33 |
Wu-ftpd Buffer Overflow Vulnerability | Giorgius | Sicurezza&Privacy | 0 | 10-10-2003 17.51.42 |