Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a Maximum Profile (maxp) table.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Acrobat_reader | Adobe | 8.2.3 (including) | 8.2.3 (including) |
| Acrobat_reader | Adobe | 9.3.3 (including) | 9.3.3 (including) |
| Extras for RHEL 4 | RedHat | acroread-0:9.3.4-1.el4 | * |
| Supplementary for Red Hat Enterprise Linux 5 | RedHat | acroread-0:9.3.4-1.el5 | * |