Vulnerability Description
Stack-based buffer overflow in the UnixAppOpenFilePerform function in Adobe Reader 5.0.9 and 5.0.10 for Unix allows remote attackers to execute arbitrary code via a PDF document with a long /Filespec tag.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Acrobat Reader | 5.0.9 |
References
- http://www.adobe.com/support/techdocs/329083.htmlPatchVendor Advisory
- http://www.idefense.com/application/poi/display?id=279&type=vulnerabilitiesPatchVendor Advisory
- http://www.novell.com/linux/security/advisories/2005_42_acroread.html
- http://www.redhat.com/support/errata/RHSA-2005-575.html
- http://www.adobe.com/support/techdocs/329083.htmlPatchVendor Advisory
- http://www.idefense.com/application/poi/display?id=279&type=vulnerabilitiesPatchVendor Advisory
- http://www.novell.com/linux/security/advisories/2005_42_acroread.html
- http://www.redhat.com/support/errata/RHSA-2005-575.html
FAQ
What is CVE-2005-1625?
CVE-2005-1625 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Stack-based buffer overflow in the UnixAppOpenFilePerform function in Adobe Reader 5.0.9 and 5.0.10 for Unix allows remote attackers to execute arbitrary code via a PDF document with a long /Filespec ...
How severe is CVE-2005-1625?
CVE-2005-1625 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1625?
Check the references section above for vendor advisories and patch information. Affected products include: Adobe Acrobat Reader.