Korean
<< Back
VID 28252
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description A version of Adobe Acrobat which is older than 9.1.1 / 8.1.5 / 7.1.2 been installed on the host. Adobe Reader versions prior to 9.1.1 / 8.1.5 / 7.1.2 are reportedly fail to validate input from a specially crafted PDF file before passing it to the
JavaScript method 'getAnnots()' leading to memory corruption and
possibly arbitrary code execution.

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of these condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
http://www.adobe.com/support/security/advisories/apsa09-02.html
http://www.kb.cert.org/vuls/id/970180
http://www.adobe.com/support/security/bulletins/apsb09-06.html

* Platforms Affected:
Adobe Reader versions prior to 9.1.1
Adobe Reader versions prior to 8.1.5
Adobe Reader versions prior to 7.1.2
Microsoft Windows Any version
Linux Any version
Recommendation Upgrade to the latest version of Adobe Acrobat (9.1.1 / 8.1.5 / 7.1.2 or later), as described in the Adobe Security bulletin at http://www.adobe.com/support/security/advisories/apsa09-02.html
http://www.kb.cert.org/vuls/id/970180
http://www.adobe.com/support/security/bulletins/apsb09-06.html
Related URL CVE-2009-1492 (CVE)
Related URL 34736 (SecurityFocus)
Related URL (ISS)