Adobe Reader and Acrobat Multiple Input Validation Vulnerabilities

Adobe Reader and Acrobat are affected by multiple input-validation vulnerabilities.

An attacker can exploit these issues by tricking an unsuspecting victim into opening a malicious PDF file. A successful attack will allow arbitrary attacker-supplied JavaScript to run in the context of the victim running the affected application.

Versions *prior to* Reader and Acrobat 7.1.4, 8.1.7, and 9.2 are affected.

This issue was previously covered in BID 36638 (Adobe Reader and Acrobat October 2009 Multiple Remote Vulnerabilities), but has been given its own record to better document it.


 

Privacy Statement
Copyright 2010, SecurityFocus