Stack-based buffer overflow – Adobe Reader and Acrobat 9.3.4

A Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.3.4 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PDF document with a long field in a Smart Independent Glyphlets (SING) table in a TTF font.

This still unpatched vulnerability is actively being exploited in the wild. Exploits do not require JavaScript to be enabled within Adobe Reader and do not require write access to any directory.  Confirmed exploits against Adobe Reader 9.1.0, 9.3.0, 9.3.4 running on Windows XP, Windows Vista and Windows 7 have been reported.

Here is the exploit code in the PDF that’s circulating in the wild:

Shell Code for CVE-2010-2883

A Metasploit module is included in the most recent version. Adobe claims to be working on a fix, lets see how long…

One thought on “Stack-based buffer overflow – Adobe Reader and Acrobat 9.3.4

  1. Pingback: Tweets that mention Stack-based buffer overflow - Adobe Reader and Acrobat 9.3.4 -- Topsy.com

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title="" rel=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>