Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 94721

Summary: app-text/acroread: remote exploitable overflow (v-s)
Product: Gentoo Security Reporter: Thierry Carrez (RETIRED) <koon>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Severity: major    
Priority: High    
Version: unspecified   
Hardware: All   
OS: Other   
Whiteboard: A2 [upstream]
Package list:
Runtime testing required: ---

Description Thierry Carrez (RETIRED) gentoo-dev 2005-06-01 04:38:39 UTC
Sebastian Krahmer (SuSE) found two issues in Acrobat Reader, both allowing remote code execution upon viewing a PDF file.

One is for Acrobat 7 and requires you have the system-mailer as your default mailer.
The other is for Acrobat 5 and requires that the webbrowser is 'mozilla-like' and no instance is running already when the PDF is viewed.

Adobe is working on a fix.
Comment 1 Thierry Carrez (RETIRED) gentoo-dev 2005-09-13 04:34:35 UTC
Doesn't look like high prio on Adobe stack. Or maybe it was related to the
recently released problem.

I think we should keep this one closed until (if) it surfaces again. Feel free
to reopen if you disagree.