Vulnerability Name: | CVE-2005-1625 (CCN-21243) | ||||||||
Assigned: | 2005-07-05 | ||||||||
Published: | 2005-07-05 | ||||||||
Updated: | 2008-09-05 | ||||||||
Summary: | Stack-based buffer overflow in the UnixAppOpenFilePerform function in Adobe Reader 5.0.9 and 5.0.10 for Unix allows remote attackers to execute arbitrary code via a PDF document with a long /Filespec tag. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2005-1625 Source: CCN Type: RHSA-2005-575 Adobe Acrobat Reader security update Source: CCN Type: Adobe Reader Web page Enhance information exchange using Adobe PDF files Source: CCN Type: Adobe Reader Download Web site Download the latest version of Adobe Reader Source: CONFIRM Type: Patch, Vendor Advisory http://www.adobe.com/support/techdocs/329083.html Source: CCN Type: GLSA-200507-09 Adobe Acrobat Reader: Buffer overflow vulnerability Source: IDEFENSE Type: Patch, Vendor Advisory 20050705 iDEFENSE Security Advisory 07.05.05: Adobe Acrobat Reader UnixAppOpenFilePerform() Buffer Overflow Vulnerability Source: CCN Type: iDEFENSE Security Advisory 07.05.05 Adobe Acrobat Reader UnixAppOpenFilePerform() Buffer Overflow Vulnerability Source: SUSE Type: UNKNOWN SUSE-SA:2005:042 Source: REDHAT Type: UNKNOWN RHSA-2005:575 Source: CCN Type: BID-14153 Adobe Reader For Unix Remote Buffer Overflow Vulnerability Source: XF Type: UNKNOWN adobe-acrobat-unixappopenfileperform-bo(21243) Source: SUSE Type: SUSE-SA:2005:042 Acrobat Reader 5: buffer overflow Source: SUSE Type: SUSE-SR:2005:017 SUSE Security Summary Report | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |