Adobe Illustrator Encapsulated Postscript File Remote Buffer Overflow Vulnerability
BID:37192
Info
Adobe Illustrator Encapsulated Postscript File Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 37192 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-4195 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 02 2009 12:00AM |
| Updated: | Jan 07 2010 07:32PM |
| Credit: | Nine:Situations:Group::pyrokinesis |
| Vulnerable: |
Adobe Illustrator CS4 Adobe Illustrator CS3 |
| Not Vulnerable: | |
Discussion
Adobe Illustrator Encapsulated Postscript File Remote Buffer Overflow Vulnerability
Adobe Illustrator is prone to a remote buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
An attacker can exploit this issue by enticing an unsuspecting victim to open a malicious Encapsulated PostScript file.
Successfully exploiting this issue will allow attackers to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will likely result in a denial-of-service condition.
This issue affects Illustrator CS4 14.0.0 and CS3 13.0.0; other versions may also be affected.
Adobe Illustrator is prone to a remote buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
An attacker can exploit this issue by enticing an unsuspecting victim to open a malicious Encapsulated PostScript file.
Successfully exploiting this issue will allow attackers to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will likely result in a denial-of-service condition.
This issue affects Illustrator CS4 14.0.0 and CS3 13.0.0; other versions may also be affected.
Exploit / POC
Adobe Illustrator Encapsulated Postscript File Remote Buffer Overflow Vulnerability
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploits are available:
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploits are available:
Solution / Fix
Adobe Illustrator Encapsulated Postscript File Remote Buffer Overflow Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Adobe Illustrator CS3
Adobe Illustrator CS4
Solution:
Vendor updates are available. Please see the references for more information.
Adobe Illustrator CS3
-
Adobe APSB10_01_CS3_Mac.zip
Apple Mac OS X
http://download.macromedia.com/pub/security/bulletins/apsb10-01/mac/AP SB10_01_CS3_Mac.zip -
Adobe APSB10_01_CS3_Win.zip
Microsoft Windows
http://download.macromedia.com/pub/security/bulletins/apsb10-01/win/AP SB10_01_CS3_Win.zip
Adobe Illustrator CS4
-
Adobe APSB10_01_CS4_Mac.zip
Apple Mac OS X
http://download.macromedia.com/pub/security/bulletins/apsb10-01/mac/AP SB10_01_CS4_Mac.zip -
Adobe APSB10_01_CS4_Win.zip
Microsoft Windows
http://download.macromedia.com/pub/security/bulletins/apsb10-01/win/AP SB10_01_CS4_Win.zip
References
Adobe Illustrator Encapsulated Postscript File Remote Buffer Overflow Vulnerability
References:
References:
- Adobe Illustrator Homepage (Adobe)
- Potential Adobe Illustrator CS4 issue (Adobe)
- Adobe Illustrator CS4 (V14.0.0) Encapsulated Postscript (.eps) Overlong DSC Comm ([email protected])
- APSA09-Security Advisory for Adobe Illustrator CS4 and Adobe Illustrator CS3 (Adobe)
- APSB10-01 Security updates available for Adobe Illustrator CS4 and CS3 (Adobe)