CVE Vulnerabilities

CVE-2002-0030

Published: Apr 02, 2003 | Modified: Sep 10, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The digital signature mechanism for the Adobe Acrobat PDF viewer only verifies the PE header of executable code for a plug-in, which can allow attackers to execute arbitrary code in certified mode by making the plug-in appear to be signed by Adobe.

Affected Software

Name Vendor Start Version End Version
Acrobat Adobe 4.0 (including) 4.0 (including)
Acrobat Adobe 4.0.5 (including) 4.0.5 (including)
Acrobat Adobe 4.0.5a (including) 4.0.5a (including)
Acrobat Adobe 4.0.5c (including) 4.0.5c (including)
Acrobat Adobe 5.0 (including) 5.0 (including)
Acrobat Adobe 5.0.5 (including) 5.0.5 (including)
Acrobat_reader Adobe 4.0 (including) 4.0 (including)
Acrobat_reader Adobe 4.0.5 (including) 4.0.5 (including)
Acrobat_reader Adobe 4.0.5a (including) 4.0.5a (including)
Acrobat_reader Adobe 4.0.5c (including) 4.0.5c (including)
Acrobat_reader Adobe 5.0 (including) 5.0 (including)
Acrobat_reader Adobe 5.0.5 (including) 5.0.5 (including)

References