Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The getAnnots Doc method in the JavaScript API in Adobe Reader and Acrobat 9.1, 8.1.4, 7.1.1, and earlier allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a PDF file that contains an annotation, and has an OpenAction entry with JavaScript code that calls this method with crafted integer arguments.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Adobe Reader "JavaScript API" 远程代码执行漏洞
Vulnerability Description
Adobe Reader和Acrobat 9.1, 8.1.4, 7.1.1及之前版本中的JavaScript API采用getAnnots Doc方式。远程攻击者可以借助一个PDF文件,引起拒绝服务攻击(内存破坏)或执行任意代码。该PDF文件包含一个注释,拥有一个带有JavaScript代码的OpenAction入口。而该JavaScript代码会利用特制的整数自变量呼叫该方式。
CVSS Information
N/A
Vulnerability Type
N/A