CVE-2012-0774: Integer Overflow
Published Apr 10, 2012
·Updated
Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.1 and 10.x before 10.1.3 allows attackers to execute arbitrary code via a crafted TrueType font.
Affected Software
52 affected components
Adobe Acrobat reader=9.0
Adobe Acrobat reader=9.1
Adobe Acrobat reader=9.1.1
Adobe Acrobat reader=9.1.2
Adobe Acrobat reader=9.1.3
Adobe Acrobat reader=9.2
Adobe Acrobat reader=9.3
Adobe Acrobat reader=9.3.1
Adobe Acrobat reader=9.3.2
Adobe Acrobat reader=9.3.3
Adobe Acrobat reader=9.3.4
Adobe Acrobat reader=9.4
Adobe Acrobat reader=9.4.1
Adobe Acrobat reader=9.4.2
Adobe Acrobat reader=9.4.3
Adobe Acrobat reader=9.4.4
Adobe Acrobat reader=9.4.5
Adobe Acrobat reader=9.4.6
Adobe Acrobat reader=9.4.7
Adobe Acrobat reader=9.5
Adobe Acrobat=9.0
Adobe Acrobat=9.0
Adobe Acrobat=9.1
Adobe Acrobat=9.1
Adobe Acrobat=9.1.1
Adobe Acrobat=9.1.2
Adobe Acrobat=9.1.3
Adobe Acrobat=9.2
Adobe Acrobat=9.3
Adobe Acrobat=9.3
Adobe Acrobat=9.3.1
Adobe Acrobat=9.3.2
Adobe Acrobat=9.3.3
Adobe Acrobat=9.3.4
Adobe Acrobat=9.4
Adobe Acrobat=9.4.1
Adobe Acrobat=9.4.2
Adobe Acrobat=9.4.3
Adobe Acrobat=9.4.4
Adobe Acrobat=9.4.5
Adobe Acrobat=9.4.6
Adobe Acrobat=9.4.7
Adobe Acrobat=9.5
Adobe Acrobat=10.0
Adobe Acrobat=10.0
Adobe Acrobat=10.0.1
Adobe Acrobat=10.0.1
Adobe Acrobat=10.0.2
Adobe Acrobat=10.0.3
Adobe Acrobat=10.1
Adobe Acrobat=10.1.1
Adobe Acrobat=10.1.2
Remediation
Event History
Apr 10, 2012
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-0774?
CVE-2012-0774 has been rated as critical due to the potential for attackers to execute arbitrary code.
2
How do I fix CVE-2012-0774?
To fix CVE-2012-0774, update Adobe Reader and Acrobat to version 9.5.1 or later, or version 10.1.3 or later.
3
What versions of Adobe Reader are affected by CVE-2012-0774?
CVE-2012-0774 affects Adobe Reader and Acrobat versions prior to 9.5.1 and 10.1.3.
4
What type of vulnerability is CVE-2012-0774?
CVE-2012-0774 is an integer overflow vulnerability that allows attackers to exploit crafted TrueType fonts.
5
What are the risks associated with CVE-2012-0774?
The primary risk associated with CVE-2012-0774 is the execution of malicious code that can compromise system security.