First published: Thu Feb 14 2013(Updated: )
Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allows remote attackers to execute arbitrary code via a crafted PDF document, as exploited in the wild in February 2013.
Credit: psirt@adobe.com psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | =9.0 | |
Adobe Acrobat Reader | =9.1 | |
Adobe Acrobat Reader | =9.1.1 | |
Adobe Acrobat Reader | =9.1.2 | |
Adobe Acrobat Reader | =9.1.3 | |
Adobe Acrobat Reader | =9.2 | |
Adobe Acrobat Reader | =9.3 | |
Adobe Acrobat Reader | =9.3.1 | |
Adobe Acrobat Reader | =9.3.2 | |
Adobe Acrobat Reader | =9.3.3 | |
Adobe Acrobat Reader | =9.3.4 | |
Adobe Acrobat Reader | =9.4 | |
Adobe Acrobat Reader | =9.4.1 | |
Adobe Acrobat Reader | =9.4.2 | |
Adobe Acrobat Reader | =9.4.3 | |
Adobe Acrobat Reader | =9.4.4 | |
Adobe Acrobat Reader | =9.4.5 | |
Adobe Acrobat Reader | =9.4.6 | |
Adobe Acrobat Reader | =9.4.7 | |
Adobe Acrobat Reader | =9.5 | |
Adobe Acrobat Reader | =9.5.1 | |
Adobe Acrobat Reader | =9.5.2 | |
Adobe Acrobat Reader | =9.5.3 | |
Adobe Acrobat Reader | =10.0 | |
Adobe Acrobat Reader | =10.0.1 | |
Adobe Acrobat Reader | =10.0.2 | |
Adobe Acrobat Reader | =10.0.3 | |
Adobe Acrobat Reader | =10.1 | |
Adobe Acrobat Reader | =10.1.1 | |
Adobe Acrobat Reader | =10.1.2 | |
Adobe Acrobat Reader | =10.1.3 | |
Adobe Acrobat Reader | =10.1.4 | |
Adobe Acrobat Reader | =10.1.5 | |
Adobe Acrobat Reader | =11.0 | |
Adobe Acrobat Reader | =11.0.1 | |
Adobe Acrobat Reader | =9.0 | |
Adobe Acrobat Reader | =9.0 | |
Adobe Acrobat Reader | =9.1 | |
Adobe Acrobat Reader | =9.1 | |
Adobe Acrobat Reader | =9.1.1 | |
Adobe Acrobat Reader | =9.1.1 | |
Adobe Acrobat Reader | =9.1.2 | |
Adobe Acrobat Reader | =9.1.3 | |
Adobe Acrobat Reader | =9.1.3 | |
Adobe Acrobat Reader | =9.2 | |
Adobe Acrobat Reader | =9.2 | |
Adobe Acrobat Reader | =9.3 | |
Adobe Acrobat Reader | =9.3 | |
Adobe Acrobat Reader | =9.3.1 | |
Adobe Acrobat Reader | =9.3.1 | |
Adobe Acrobat Reader | =9.3.2 | |
Adobe Acrobat Reader | =9.3.2 | |
Adobe Acrobat Reader | =9.3.3 | |
Adobe Acrobat Reader | =9.3.4 | |
Adobe Acrobat Reader | =9.3.4 | |
Adobe Acrobat Reader | =9.4 | |
Adobe Acrobat Reader | =9.4.1 | |
Adobe Acrobat Reader | =9.4.1 | |
Adobe Acrobat Reader | =9.4.2 | |
Adobe Acrobat Reader | =9.4.2 | |
Adobe Acrobat Reader | =9.4.3 | |
Adobe Acrobat Reader | =9.4.3 | |
Adobe Acrobat Reader | =9.4.4 | |
Adobe Acrobat Reader | =9.4.4 | |
Adobe Acrobat Reader | =9.4.5 | |
Adobe Acrobat Reader | =9.4.5 | |
Adobe Acrobat Reader | =9.4.6 | |
Adobe Acrobat Reader | =9.4.6 | |
Adobe Acrobat Reader | =9.4.7 | |
Adobe Acrobat Reader | =9.5 | |
Adobe Acrobat Reader | =9.5.1 | |
Adobe Acrobat Reader | =9.5.2 | |
Adobe Acrobat Reader | =9.5.3 | |
Adobe Acrobat Reader | =10.0 | |
Adobe Acrobat Reader | =10.0 | |
Adobe Acrobat Reader | =10.0.1 | |
Adobe Acrobat Reader | =10.0.1 | |
Adobe Acrobat Reader | =10.0.2 | |
Adobe Acrobat Reader | =10.0.3 | |
Adobe Acrobat Reader | =10.1 | |
Adobe Acrobat Reader | =10.1.1 | |
Adobe Acrobat Reader | =10.1.2 | |
Adobe Acrobat Reader | =10.1.3 | |
Adobe Acrobat Reader | =10.1.4 | |
Adobe Acrobat Reader | =10.1.5 | |
Adobe Acrobat Reader | =11.0 | |
Adobe Acrobat Reader | =11.0.1 | |
Adobe Acrobat Reader | ||
All of | ||
Any of | ||
Adobe Acrobat Reader | >=9.0<9.5.4 | |
Adobe Acrobat Reader | >=10.0<10.1.6 | |
Adobe Acrobat Reader | >=11.0<11.0.02 | |
Adobe Acrobat Reader | >=10.0<10.1.6 | |
Adobe Acrobat Reader | >=11.0<11.0.02 | |
Any of | ||
Apple iOS and macOS | ||
Microsoft Windows | ||
All of | ||
Adobe Acrobat Reader | >=9.0<9.5.4 | |
Linux Kernel | ||
redhat enterprise Linux desktop | =6.0 | |
redhat enterprise Linux eus | =5.9 | |
redhat enterprise Linux eus | =6.4 | |
redhat enterprise Linux server | =6.0 | |
redhat enterprise Linux server aus | =5.9 | |
redhat enterprise Linux server aus | =6.4 | |
redhat enterprise Linux workstation | =6.0 | |
openSUSE | =11.4 | |
openSUSE | =12.1 | |
SUSE Linux Enterprise Desktop with Beagle | =10-sp4 | |
SUSE Linux Enterprise Desktop with Beagle | =11-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-0641 has a high severity rating due to its potential to allow remote code execution via malicious PDF files.
To fix CVE-2013-0641, update Adobe Reader and Acrobat to the latest versions where the vulnerability is patched.
CVE-2013-0641 affects Adobe Reader and Acrobat versions 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02.
Exploitation of CVE-2013-0641 can lead to arbitrary code execution if a user opens a crafted PDF file.
Yes, CVE-2013-0641 was reported to be actively exploited in the wild shortly after its discovery.