HTTP: Adobe Acrobat Reader PDF Catalog Handling Vulnerability

This signature detects attempts to exploit a known vulnerability against multiple products that parse the Portable Document Format (PDF). Attackers can craft a malicious document that can cause arbitrary code to be executed on the victim host.

Extended Description

Multiple PDF readers are prone to multiple remote buffer-overflow vulnerabilities because the applications fail to bounds-check user-supplied data before copying it into an insufficiently sized buffer. An attacker may be able exploit this issue to execute arbitrary code within the context of the affected application. In some circumstances, the vulnerability can be exploited only to cause a denial of service.

Affected Products

Adobe acrobat_reader_(unix)

Short Name
HTTP:STC:ADOBE:PDF-CATALOG
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Acrobat Adobe CVE-2007-0104 Catalog Handling PDF Reader Vulnerability
Release Date
09/28/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Adobe

Apple

Xpdf

Kde

Rpath

Turbolinux

Poppler

Pdftohtml

Tetex

Ubuntu

Mandriva

Suse

CVSS Score

6.8

Found a potential security threat?