SUSE-SU-2012:0086Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00019.html CVE-2011-4369
Adobe Reader and Acrobat PRC component Remote Code Execution
Record summary
CVE-2011-4369 has a selected CVSS score of 10.0.
Description
Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windows, Adobe Reader and Acrobat 9.x through 9.4.6 on Mac OS X, Adobe Reader and Acrobat 10.x through 10.1.1 on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Dec 16, 2011 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Acrobat and ReaderBrowse Adobe / Acrobat and Reader | VulnCheck | Version data not supplied | |
References
9openSUSE-SU-2012:0087Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00020.html adobe.comConfirmation
http://www.adobe.com/support/security/bulletins/apsb11-30.html adobe.comConfirmation
http://www.adobe.com/support/security/bulletins/apsb12-01.html RHSA-2012:0011Vendor advisory
http://www.redhat.com/support/errata/RHSA-2012-0011.html 51092vdb entry
http://www.securityfocus.com/bid/51092 TA11-350AThird-party advisory
http://www.us-cert.gov/cas/techalerts/TA11-350A.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2011-4369 oval:org.mitre.oval:def:14865vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14865