CVE-2013-3338: Buffer Overflow
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3339, CVE-2013-3340, and CVE-2013-3341.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3338?
CVE-2013-3338 has been classified with a high severity, as it allows attackers to execute arbitrary code or cause a denial of service.
How do I fix CVE-2013-3338?
To fix CVE-2013-3338, you should update Adobe Reader and Acrobat to version 9.5.5, 10.1.7, or 11.0.3 or later.
Which versions of Adobe Reader are affected by CVE-2013-3338?
Adobe Reader versions prior to 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.3 are vulnerable to CVE-2013-3338.
What types of attacks can exploit CVE-2013-3338?
CVE-2013-3338 can be exploited to execute arbitrary code or cause memory corruption leading to denial of service.
Is there a workaround for CVE-2013-3338 if I cannot update immediately?
Currently, the best mitigation for CVE-2013-3338 is to limit use of affected versions until they can be updated.