CVE-2011-0600: Input Validation
The U3D component in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to execute arbitrary code via a 3D file with an invalid Parent Node count that triggers an incorrect size calculation and memory corruption, a different vulnerability than CVE-2011-0590, CVE-2011-0591, CVE-2011-0592, CVE-2011-0593, and CVE-2011-0595.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0600?
The severity of CVE-2011-0600 is classified as critical due to its potential for remote code execution.
How do I fix CVE-2011-0600?
To fix CVE-2011-0600, update Adobe Reader and Acrobat to version 10.0.1 or later, 9.4.2 or later, or 8.2.6 or later.
Which versions of Adobe Reader are affected by CVE-2011-0600?
CVE-2011-0600 affects Adobe Reader and Acrobat versions 8.x before 8.2.6, 9.x before 9.4.2, and 10.x before 10.0.1.
Can CVE-2011-0600 be exploited via malicious files?
Yes, CVE-2011-0600 can be exploited by opening a specially crafted 3D file that triggers memory corruption.
What are the implications of CVE-2011-0600 if exploited?
If CVE-2011-0600 is successfully exploited, it allows remote attackers to execute arbitrary code on the target system.