CVE-2013-3552: Buffer Overflow
Published Feb 8, 2018
·Updated
Nitro Pro 7.5.0.29 and earlier and Nitro Reader 2.5.0.45 and earlier allow remote attackers to execute arbitrary code via a crafted PDF file.
Affected Software
2 affected components
Nitropdf Nitro Pro<=7.5.0.22
Nitropdf Nitro Reader<=2.5.0.36
Event History
Feb 8, 2018
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3552?
CVE-2013-3552 has a critical severity rating as it allows remote code execution via malicious PDF files.
2
How do I fix CVE-2013-3552?
To fix CVE-2013-3552, update Nitro Pro to version 7.5.0.30 or later and Nitro Reader to version 2.5.0.47 or later.
3
What versions of Nitro Pro are affected by CVE-2013-3552?
Nitro Pro versions 7.5.0.29 and earlier are affected by CVE-2013-3552.
4
What versions of Nitro Reader are vulnerable due to CVE-2013-3552?
Nitro Reader versions 2.5.0.45 and earlier are vulnerable to CVE-2013-3552.
5
What type of attacks does CVE-2013-3552 enable?
CVE-2013-3552 enables remote attackers to execute arbitrary code on the victim's machine through a specially crafted PDF file.