Oval Definition:oval:org.mitre.oval:def:12527
Revision Date:2013-08-12Version:17
Title:Denial of service vulnerability in EScript.api plugin in Adobe Acrobat and Adobe Reader 9.4.0, 8.1.7 and other versions using a crafted PDF document
Description:The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document that triggers memory corruption, involving the printSeps function. NOTE: some of these details are obtained from third party information.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-4091
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Adobe Acrobat
Adobe Reader
Definition Synopsis
  • Adobe reader 8 series installed and version is greater than or equal to 8.0.0 along with the existence of EScript.api
  • Adobe Reader 8 Series is installed
  • AND Check the existence of EScript.api in Adobe Reader 8
  • OR Adobe Acrobat 9 series installed and version is greater than or equal to 9.0.0 along with the existence of EScript.api
  • Adobe Acrobat 9 Series is installed
  • AND Check the existence of EScript.api in Adobe Acrobat 9
  • AND Check if the version of Adobe Acrobat is less than or equal to 9.4.0
  • OR Adobe reader 9 series installed and version is less than or equal to 9.4.0 along with the existence of EScript.api
  • Adobe Reader 9 Series is installed
  • AND Check the existence of EScript.api in Adobe Reader 9
  • AND Check if the version of Adobe Reader is less than or equal to 9.4.0
  • BACK