CISA KEV 정보
| 취약점명 | Adobe Reader and Acrobat Universal 3D Memory Corruption Vulnerability |
|---|---|
| 설명 | The Universal 3D (U3D) component in Adobe Reader and Acrobat contains a memory corruption vulnerability which could allow remote attackers to execute code or cause denial-of-service (DoS). |
| 조치사항 | Apply updates per vendor instructions. |
| 랜섬웨어 캠페인 악용 | Unknown |
| CWE | CWE-787 |
| 등록일 (KEV) | 2022-06-08 |
| 조치 기한 | 2022-06-22 |
| 추가 참고 | https://nvd.nist.gov/vuln/detail/CVE-2011-2462 |
NVD 상세 정보
CVSS v3.1: 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HCVSS v2.0: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C설명: Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011.
CWE: CWE-787 | CWE-787
참조
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00019.html [Broken Link]
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00020.html [Broken Link]
- http://www.adobe.com/support/security/advisories/apsa11-04.html [Vendor Advisory]
- http://www.adobe.com/support/security/bulletins/apsb11-30.html [Not Applicable]
- http://www.adobe.com/support/security/bulletins/apsb12-01.html [Not Applicable]
- http://www.redhat.com/support/errata/RHSA-2012-0011.html [Broken Link]
- http://www.us-cert.gov/cas/techalerts/TA11-350A.html [Third Party Advisory, US Government Resource]
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14562 [Broken Link]
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00019.html [Broken Link]
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00020.html [Broken Link]
- http://www.adobe.com/support/security/advisories/apsa11-04.html [Vendor Advisory]
- http://www.adobe.com/support/security/bulletins/apsb11-30.html [Not Applicable]
- http://www.adobe.com/support/security/bulletins/apsb12-01.html [Not Applicable]
- http://www.redhat.com/support/errata/RHSA-2012-0011.html [Broken Link]
- http://www.us-cert.gov/cas/techalerts/TA11-350A.html [Third Party Advisory, US Government Resource]
- ... 외 3건
This product uses the NVD API but is not endorsed or certified by the NVD.