CVE-2013-0641: Adobe Reader Buffer Overflow Vulnerability
Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allows remote attackers to execute arbitrary code via a crafted PDF document, as exploited in the wild in February 2013.
Other sources
A buffer overflow vulnerability exists in Adobe Reader which allows an attacker to perform remote code execution.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0641?
CVE-2013-0641 has a high severity rating due to its potential to allow remote code execution via malicious PDF files.
How do I fix CVE-2013-0641?
To fix CVE-2013-0641, update Adobe Reader and Acrobat to the latest versions where the vulnerability is patched.
Which versions are affected by CVE-2013-0641?
CVE-2013-0641 affects Adobe Reader and Acrobat versions 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02.
What types of attacks are possible with CVE-2013-0641?
Exploitation of CVE-2013-0641 can lead to arbitrary code execution if a user opens a crafted PDF file.
Is CVE-2013-0641 being actively exploited?
Yes, CVE-2013-0641 was reported to be actively exploited in the wild shortly after its discovery.