Adobe Reader and Acrobat are prone to an overflow condition. The program fails to properly sanitize user-supplied input in a PICT image resulting in a heap overflow when processing a 0x10 opcode. This may allow a remote attacker to execute arbitrary code. No further details have been provided.
Classification
Location:
Local / Remote,
Context Dependent
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Solution:
Upgrade
Exploit:
Exploit Private
Disclosure:
Vendor Verified,
Coordinated Disclosure
Solution
Upgrade to the version specified in the vendor advisory or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.