7.5

CVE-2011-4370

Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-4372 and CVE-2011-4373.

Data is provided by the National Vulnerability Database (NVD)
AdobeAcrobat Version <= 10.1.1
   ApplemacOS
   MicrosoftWindows
AdobeReader Version <= 10.1.1
   ApplemacOS
   MicrosoftWindows
AdobeAcrobat Version <= 9.4.6
   MicrosoftWindows
AdobeAcrobat Version9.4.7
   MicrosoftWindows
AdobeReader Version <= 9.4.6
   MicrosoftWindows
AdobeReader Version9.4.7
   MicrosoftWindows
AdobeAcrobat Version <= 9.4.5
   ApplemacOS Version-
AdobeAcrobat Version9.4.6
   ApplemacOS Version-
AdobeReader Version <= 9.4.5
   ApplemacOS Version-
AdobeReader Version9.4.6
   ApplemacOS Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.93% 0.859
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.