CVE-2011-0598: Integer Overflow
Integer overflow in ACE.dll in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code via crafted ICC data, a different vulnerability than CVE-2011-0596, CVE-2011-0599, and CVE-2011-0602.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0598?
CVE-2011-0598 is considered critical as it allows remote attackers to execute arbitrary code.
How do I fix CVE-2011-0598?
To fix CVE-2011-0598, update Adobe Reader or Acrobat to version 10.0.1 or later, 9.4.2 or later, or 8.2.6 or later.
What software is affected by CVE-2011-0598?
CVE-2011-0598 affects Adobe Reader and Acrobat versions 8.x, 9.x, and 10.x prior to the specified updates.
What types of attacks can exploit CVE-2011-0598?
CVE-2011-0598 can be exploited via crafted ICC data in PDF files.
Is there a workaround for CVE-2011-0598?
While updating is the best solution, users can consider disabling JavaScript in Adobe Reader and Acrobat as a temporary workaround.