#VU13639 Heap-based buffer overflow in Adobe Reader and Adobe Acrobat - CVE-2018-5052
Published: July 10, 2018 / Updated: August 1, 2018
Adobe Reader
Adobe Acrobat
Adobe
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing Animator Pro CEL image data within .pdf documents in the Universal 3D (U3D) engine. A remote attacker can create a specially crafted PDF document, trick the victim into opening it, trigger a heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.