Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
[ GLSA 201308-03 ] Adobe Reader: Multiple vulnerabilities
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index News & Announcements
View previous topic :: View next topic  
Author Message
GLSA
Advocate
Advocate


Joined: 12 May 2004
Posts: 2663

PostPosted: Thu Aug 22, 2013 11:26 pm    Post subject: [ GLSA 201308-03 ] Adobe Reader: Multiple vulnerabilities Reply with quote

Gentoo Linux Security Advisory

Title: Adobe Reader: Multiple vulnerabilities (GLSA 201308-03)
Severity: high
Exploitable: local, remote
Date: August 22, 2013
Updated: January 30, 2014
Bug(s): #431732, #451058, #469960
ID: 201308-03

Synopsis

Multiple vulnerabilities have been found in Adobe Reader, including
potential remote execution of arbitrary code and local privilege
escalation.


Background

Adobe Reader is a closed-source PDF reader.

Affected Packages

Package: app-text/acroread
Vulnerable: < 9.5.5
Unaffected: >= 9.5.5
Architectures: All supported architectures


Description

Multiple vulnerabilities have been discovered in Adobe Reader. Please
review the CVE identifiers referenced below for details.


Impact

A remote attacker could entice a user to open a specially crafted PDF
file, possibly resulting in arbitrary code execution or a Denial of
Service condition. A local attacker could gain privileges via unspecified
vectors.


Workaround

There is no known workaround at this time.

Resolution

All Adobe Reader users should upgrade to the latest version:
Code:
# emerge --sync
      # emerge --ask --oneshot --verbose ">=app-text/acroread-9.5.5"
   


References

CVE-2012-1525
CVE-2012-1530
CVE-2012-2049
CVE-2012-2050
CVE-2012-2051
CVE-2012-4147
CVE-2012-4148
CVE-2012-4149
CVE-2012-4150
CVE-2012-4151
CVE-2012-4152
CVE-2012-4153
CVE-2012-4154
CVE-2012-4155
CVE-2012-4156
CVE-2012-4157
CVE-2012-4158
CVE-2012-4159
CVE-2012-4160
CVE-2012-4363
CVE-2013-0601
CVE-2013-0602
CVE-2013-0603
CVE-2013-0604
CVE-2013-0605
CVE-2013-0606
CVE-2013-0607
CVE-2013-0608
CVE-2013-0609
CVE-2013-0610
CVE-2013-0611
CVE-2013-0612
CVE-2013-0613
CVE-2013-0614
CVE-2013-0615
CVE-2013-0616
CVE-2013-0617
CVE-2013-0618
CVE-2013-0619
CVE-2013-0620
CVE-2013-0621
CVE-2013-0622
CVE-2013-0623
CVE-2013-0624
CVE-2013-0626
CVE-2013-0627
CVE-2013-0640
CVE-2013-0641
CVE-2013-2549
CVE-2013-2550
CVE-2013-2718
CVE-2013-2719
CVE-2013-2720
CVE-2013-2721
CVE-2013-2722
CVE-2013-2723
CVE-2013-2724
CVE-2013-2725
CVE-2013-2726
CVE-2013-2727
CVE-2013-2729
CVE-2013-2730
CVE-2013-2731
CVE-2013-2732
CVE-2013-2733
CVE-2013-2734
CVE-2013-2735
CVE-2013-2736
CVE-2013-2737
CVE-2013-3337
CVE-2013-3338
CVE-2013-3339
CVE-2013-3340
CVE-2013-3341
CVE-2013-3342


Last edited by GLSA on Thu Feb 06, 2014 4:32 am; edited 1 time in total
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index News & Announcements All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum