Junglewise Threat Intelligence

CVE-2013-0641: Adobe Reader Buffer Overflow Vulnerability

CVE-2013-0641 · Severity: critical · CVSS 7.8 · Exploited in the wild · Published 2022-03-03

Technologies: Adobe Acrobat, Adobe Reader, Adobe Flash Player, Adobe AIR. Vendors: Adobe.

Executive brief

A buffer overflow vulnerability in Adobe Reader and Acrobat allows remote attackers to execute arbitrary code via a specially crafted PDF document. The vulnerability was actively exploited in the wild prior to being patched in early 2013.

Affected products

  • Adobe Reader 9.x before 9.5.4, 10.x before 10.1.6, 11.x before 11.0.02
  • Adobe Acrobat 9.x before 9.5.4, 10.x before 10.1.6, 11.x before 11.0.02

Timeline

  • 2013-02-13: exploited: Exploited in the wild in February 2013.
  • 2022-03-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog.

Related threats