ラベル Adobe Acrobat の投稿を表示しています。 すべての投稿を表示
ラベル Adobe Acrobat の投稿を表示しています。 すべての投稿を表示

2011-09-16

Adobe Acrobat, Adobe Reader

ソフト名:Adobe Acrobat 3D 8.3/8 Professional/8.3以下/9.4.5以下/X 10.1以下, Adobe Reader 8.3以下/9.4.5以下/X 10.1以下 (Adobe Flash Player 10.3.185.25以下(Android)/10.3.181.36以下(Windows/Macintosh/Linux/Solaris))
回避策:apsb11-24にて対応
脆弱性:セキュリティ制限の回避, 機密情報の奪取, 権限の昇格, システムアクセス, バッファオーバーフロー, リモートコード実行, 不特定のエラー, メモリ破壊, 整数オーバーフローエラー, メモリ内容の曝露, 解放後使用エラー
ソース:
CVE:CVE-2011-1353, CVE-2011-2130, CVE-2011-2134, CVE-2011-2135, CVE-2011-2136, CVE-2011-2137, CVE-2011-2138, CVE-2011-2139, CVE-2011-2140, CVE-2011-2414, CVE-2011-2415, CVE-2011-2416, CVE-2011-2417, CVE-2011-2424, CVE-2011-2425, CVE-2011-2431, CVE-2011-2432, CVE-2011-2433, CVE-2011-2434, CVE-2011-2435, CVE-2011-2436, CVE-2011-2437, CVE-2011-2438, CVE-2011-2439, CVE-2011-2440, CVE-2011-2441, CVE-2011-2442
危険性:High Risk

2011-06-17

Adobe Acrobat, Adobe Reader

ソフト名:Adobe Acrobat 8.2.6以下/8.2.6 Professional以下/3D 8.2.6以下/9.4.4以下/X 10.0.3以下, Adobe Reader 8.2.6以下/9.4.4以下/X 10.0.1以下(Windows)/X 10.0.3以下(Macintosh)
回避策:APSB11-16にて対応
脆弱性:セキュリティ制限の回避, XSS, 機密情報の奪取, システムアクセス, バッファオーバーフロー, 整数オーバーフロー, メモリ破壊, 不特定のエラー, 不正ライブラリのロード, キャッシュ汚染, スクリプトコード実行
CVE:CVE-2011-0579, CVE-2011-0618, CVE-2011-0619, CVE-2011-0620, CVE-2011-0621, CVE-2011-0622, CVE-2011-0623, CVE-2011-0624, CVE-2011-0625, CVE-2011-0626, CVE-2011-0627, CVE-2011-0628, CVE-2011-2094, CVE-2011-2095, CVE-2011-2096, CVE-2011-2097, CVE-2011-2098, CVE-2011-2099, CVE-2011-2100, CVE-2011-2101, CVE-2011-2102, CVE-2011-2103, CVE-2011-2104, CVE-2011-2105, CVE-2011-2106, CVE-2011-2107
危険性:High Risk

2011-02-11

Adobe Flash Player, Adobe Acrobat, Adobe Reader, Red Hat Enterprise Linux

ソフト名:Adobe Flash Player 10.1.102.64以前, Adobe Acrobat 3D 8.2.5/8 Professional/8.2.5~X 10.0/, Adobe Reader 8.2.5~X 10.0, Red Hat Enterprise Linux Desktop Supplementary (v. 5 client)/Desktop Supplementary (v. 6)/Supplementary (v. 5 server)/Server Supplementary (v. 6)/Workstation Supplementary (v. 6)
回避策:アップデート, APSB11-03, RHSA-2011:0206-01にて対応
脆弱性:システムアクセス, バッファオーバーフロー, アクションスクリプトの実行, メモリ破壊, 不正ライブラリのロード, リモートコード実行, XSS, 権限の昇格
ソース:
http://www.adobe.com/products/flashplayer/
http://www.adobe.com/products/acrobatpro.html
http://www.adobe.com/products/reader.html
http://www.redhat.com/
http://www.adobe.com/support/security/bulletins/apsb11-02.html
http://www.adobe.com/support/security/bulletins/apsb11-03.html
https://rhn.redhat.com/errata/RHSA-2011-0206.html
http://www.zerodayinitiative.com/advisories/ZDI-11-065/
http://www.zerodayinitiative.com/advisories/ZDI-11-066/
http://www.zerodayinitiative.com/advisories/ZDI-11-067/
http://www.zerodayinitiative.com/advisories/ZDI-11-068/
http://www.zerodayinitiative.com/advisories/ZDI-11-069/
http://www.zerodayinitiative.com/advisories/ZDI-11-070/
http://www.zerodayinitiative.com/advisories/ZDI-11-071/
http://www.zerodayinitiative.com/advisories/ZDI-11-072/
http://www.zerodayinitiative.com/advisories/ZDI-11-073/
http://www.zerodayinitiative.com/advisories/ZDI-11-074/
http://www.zerodayinitiative.com/advisories/ZDI-11-075/
http://www.zerodayinitiative.com/advisories/ZDI-11-077/
http://www.zerodayinitiative.com/advisories/ZDI-11-081/
http://www.fortiguard.com/advisory/FGA-2011-06.html
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=891
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=893
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=894
http://secunia.com/advisories/43207/
http://secunia.com/advisories/43267/
http://secunia.com/advisories/43292/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0558
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0559
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0560
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0561
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0562
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0563
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0564
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0565
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0566
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0567
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0568
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0570
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0571
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0572
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0573
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0574
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0575
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0577
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0578
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0585
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0586
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0587
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0588
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0589
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0590
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0591
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0592
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0593
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0594
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0595
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0596
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0598
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0599
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0600
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0602
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0603
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0604
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0605
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0606
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0607
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0608
CVE:CVE-2011-0558, CVE-2011-0559, CVE-2011-0560, CVE-2011-0561, CVE-2011-0562, CVE-2011-0563, CVE-2011-0564, CVE-2011-0565, CVE-2011-0566, CVE-2011-0567, CVE-2011-0568, CVE-2011-0570, CVE-2011-0571, CVE-2011-0572, CVE-2011-0573, CVE-2011-0574, CVE-2011-0575, CVE-2011-0577, CVE-2011-0578, CVE-2011-0585, CVE-2011-0586, CVE-2011-0587, CVE-2011-0588, CVE-2011-0589, CVE-2011-0590, CVE-2011-0591, CVE-2011-0592, CVE-2011-0593, CVE-2011-0594, CVE-2011-0595, CVE-2011-0596, CVE-2011-0598, CVE-2011-0599, CVE-2011-0600, CVE-2011-0602, CVE-2011-0603, CVE-2011-0604, CVE-2011-0605, CVE-2011-0606, CVE-2011-0607, CVE-2011-0608
危険性:High Risk

2010-10-08

Adobe Acrobat, Adobe Reader

ソフト名:Adobe Acrobat 8.0~9.3.4(Standard/Professional), Adobe Reader 8.0~9.3.4
回避策:APSB10-21にて対応
脆弱性:リモートコード実行, DoS攻撃, 権限の昇格, メモリ破壊エラー, アプリケーションのクラッシュ, コード実行
ソース:
http://www.adobe.com/support/security/bulletins/apsb10-21.html
http://www.zerodayinitiative.com/advisories/ZDI-10-191/
http://www.zerodayinitiative.com/advisories/ZDI-10-192/
http://www.zerodayinitiative.com/advisories/ZDI-10-193/
http://www.exploit-db.com/exploits/15212/
http://www.securityfocus.com/bid/43722
http://www.securityfocus.com/bid/43723
http://www.securityfocus.com/bid/43724
http://www.securityfocus.com/bid/43725
http://www.securityfocus.com/bid/43726
http://www.securityfocus.com/bid/43727
http://www.securityfocus.com/bid/43729
http://www.securityfocus.com/bid/43730
http://www.securityfocus.com/bid/43731
http://www.securityfocus.com/bid/43732
http://www.securityfocus.com/bid/43733
http://www.securityfocus.com/bid/43734
http://www.securityfocus.com/bid/43735
http://www.securityfocus.com/bid/43736
http://www.securityfocus.com/bid/43737
http://www.securityfocus.com/bid/43738
http://www.securityfocus.com/bid/43739
http://www.securityfocus.com/bid/43740
http://www.securityfocus.com/bid/43741
http://www.securityfocus.com/bid/43744
http://www.securityfocus.com/bid/43746
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2887
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2888
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2889
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2890
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3619
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3620
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3621
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3622
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3623
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3624
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3625
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3626
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3627
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3628
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3629
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3630
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3631
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3632
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3656
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3657
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3658
http://www.vupen.com/english/advisories/2010/2573
CVE:CVE-2010-2887, CVE-2010-2888, CVE-2010-2889, CVE-2010-2890, CVE-2010-3619, CVE-2010-3620, CVE-2010-3621, CVE-2010-3622, CVE-2010-3623, CVE-2010-3624, CVE-2010-3625, CVE-2010-3626, CVE-2010-3627, CVE-2010-3628, CVE-2010-3629, CVE-2010-3630, CVE-2010-3631, CVE-2010-3632, CVE-2010-3656, CVE-2010-3657, CVE-2010-3658
危険性:High Risk

2010-08-18

Adobe Acrobat, Adobe Reader

ソフト名:Adobe Acrobat 6.0~9.3.3(Professional), Adobe Reader 6.0~9.3.3
回避策:未対応
脆弱性:セキュリティの強度不足
ソース:
http://pdfsig-collision.florz.de/
http://www.securityfocus.com/bid/42377
危険性:Low Risk

2010-06-30

Adobe Acrobat, Adobe Reader

ソフト名:Adobe Acrobat 8.0~9.3.2, Adobe Reader 8.0~9.3.2
回避策:APSB10-15にて対応
脆弱性:リモートコード実行, DoS攻撃
ソース:
http://www.adobe.com/support/security/bulletins/apsb10-15.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1285
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1295
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2168
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2201
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2202
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2203
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2204
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2205
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2206
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2207
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2208
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2209
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2210
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2211
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2212
CVE:CVE-2010-1285, CVE-2010-1295, CVE-2010-2168, CVE-2010-2201, CVE-2010-2202, CVE-2010-2203, CVE-2010-2204, CVE-2010-2205, CVE-2010-2206, CVE-2010-2207, CVE-2010-2208, CVE-2010-2209, CVE-2010-2210, CVE-2010-2211, CVE-2010-2212
危険性:High Risk

2010-04-24

Adobe Acrobat, Adobe Reader

ソフト名:Adobe Acrobat 8.0~9.2, Adobe Reader 8.0~9.2
回避策:パッチのインストール(APSB10-02)
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.adobe.com/support/security/bulletins/apsb10-02.html
http://www.zerodayinitiative.com/advisories/ZDI-10-077/
http://www.securityfocus.com/bid/39615
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1278
CVE:CVE-2010-1278
危険性:High Risk

2010-04-16

Adobe Acrobat, Adobe Reader

ソフト名:Adobe Acrobat 3.0~9.1.3, Adobe Reader 3.0~9.1.3
回避策:あり
脆弱性:XSS, コード実行, 特定されていない脆弱性, DoS攻撃, リモートコード実行, 埋め込みフォント処理エラー, バッファオーバーフロー, アプリケーションのクラッシュ
ソース:
http://www.adobe.com/support/security/bulletins/apsb10-09.html
http://www.securityfocus.com/bid/39227
http://www.securityfocus.com/bid/39329
http://www.securityfocus.com/bid/39417
http://www.securityfocus.com/bid/39470
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0190
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0191
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0192
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0193
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0194
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0195
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0196
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0197
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0198
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0199
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0201
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0202
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0203
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0204
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1241
http://secunia.com/advisories/39272
CVE:CVE-2010-0190, CVE-2010-0191, CVE-2010-0192, CVE-2010-0193, CVE-2010-0194, CVE-2010-0195, CVE-2010-0196, CVE-2010-0197, CVE-2010-0198, CVE-2010-0199, CVE-2010-0201, CVE-2010-0202, CVE-2010-0203, CVE-2010-0204, CVE-2010-1241
危険性:High Risk

2010-02-17

Adobe Acrobat/Reader

ソフト名:Adobe Acrobat/Reader 9.0
回避策:あり
脆弱性:未知の脆弱性
ソース:
http://www.adobe.com/support/security/bulletins/apsb10-07.html
CVE:CVE-2010-0188
危険性:High Risk