First published: Tue Aug 16 2005(Updated: )
Buffer overflow in a "core application plug-in" for Adobe Reader 5.1 through 7.0.2 and Acrobat 5.0 through 7.0.2 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | =5.0 | |
Adobe Acrobat Reader | =5.0.5 | |
Adobe Acrobat Reader | =6.0 | |
Adobe Acrobat Reader | =6.0.1 | |
Adobe Acrobat Reader | =6.0.2 | |
Adobe Acrobat Reader | =7.0 | |
Adobe Acrobat Reader | =7.0.1 | |
Adobe Acrobat Reader | =7.0.2 | |
Adobe Acrobat Reader Notification Manager | =5.1 | |
Adobe Acrobat Reader Notification Manager | =6.0 | |
Adobe Acrobat Reader Notification Manager | =6.0.1 | |
Adobe Acrobat Reader Notification Manager | =6.0.2 | |
Adobe Acrobat Reader Notification Manager | =6.0.3 | |
Adobe Acrobat Reader Notification Manager | =7.0 | |
Adobe Acrobat Reader Notification Manager | =7.0.1 | |
Adobe Acrobat Reader Notification Manager | =7.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-2470 is classified as a high severity vulnerability due to its potential to cause crashes and execute arbitrary code.
To fix CVE-2005-2470, update your Adobe Reader or Acrobat software to the latest version available from Adobe.
CVE-2005-2470 affects Adobe Reader versions 5.1 through 7.0.2 and Acrobat versions 5.0 through 7.0.2.
The potential impacts of CVE-2005-2470 include denial of service through crashes and the possibility of arbitrary code execution.
Yes, attackers can exploit CVE-2005-2470 remotely through the manipulation of documents processed by the affected Adobe software.