Vulnerability Description
The Bitmap parsing component in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a crafted image that causes an invalid pointer calculation related to 4/8-bit RLE compression, a different vulnerability than CVE-2011-0596, CVE-2011-0598, and CVE-2011-0602.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Acrobat Reader | 8.0 |
| Apple | Mac Os X | All versions |
| Microsoft | Windows | All versions |
| Adobe | Acrobat | 8.0 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/43470
- http://www.adobe.com/support/security/bulletins/apsb11-03.htmlPatchVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2011-0301.html
- http://www.securityfocus.com/archive/1/516314
- http://www.securityfocus.com/bid/46220
- http://www.securitytracker.com/id?1025033
- http://www.vupen.com/english/advisories/2011/0337
- http://www.vupen.com/english/advisories/2011/0492
- http://www.zerodayinitiative.com/advisories/ZDI-11-072/
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3
- http://secunia.com/advisories/43470
- http://www.adobe.com/support/security/bulletins/apsb11-03.htmlPatchVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2011-0301.html
- http://www.securityfocus.com/archive/1/516314
- http://www.securityfocus.com/bid/46220
FAQ
What is CVE-2011-0599?
CVE-2011-0599 is a vulnerability with a CVSS score of 9.3 (HIGH). The Bitmap parsing component in rt3d.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code...
How severe is CVE-2011-0599?
CVE-2011-0599 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-0599?
Check the references section above for vendor advisories and patch information. Affected products include: Adobe Acrobat Reader, Apple Mac Os X, Microsoft Windows, Adobe Acrobat.