CVE-2013-2729
קריטית 9.8 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Adobe Reader and Acrobat Arbitrary Integer Overflow Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply updates per vendor instructions.
תיאור (מקור, אנגלית)
Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-2727.
מדדים
- CVSS 3.1
-
9.8 (CRITICAL)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 67% (אחוזון 100) נכון ל-24/7/2026
- CWE
- CWE-190
מוצרים מושפעים
adobe: acrobat; adobe: acrobat reader; suse: linux enterprise desktop; redhat: enterprise linux desktop; redhat: enterprise linux eus; redhat: enterprise linux server; redhat: enterprise linux server aus; redhat: enterprise linux workstation
קישורים
- http://www.adobe.com/support/security/bulletins/apsb13-15.html Not ApplicablePatchVendor Advisory
- http://www.adobe.com/support/security/bulletins/apsb13-15.html Not ApplicablePatchVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2013-05/msg00004.html Mailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0826.html Third Party Advisory
- http://security.gentoo.org/glsa/glsa-201308-03.xml Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval… Broken Link
- http://lists.opensuse.org/opensuse-security-announce/2013-05/msg00004.html Mailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2013-0826.html Third Party Advisory
- http://security.gentoo.org/glsa/glsa-201308-03.xml Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval… Broken Link