75079 : PDF-Pro PDF Reader ActiveX (ePapyrusReader.ocx) Corrupted Dictionary Arrays Method Use-after-free PDF File Handling Memory Dereference Remote Code Execution
Printer |
http://osvdb.org/75079 |
Email This
| Edit Vulnerability
Views This Week
Views All Time
Added to OSVDB
Last Modified
Modified (since 2008)
Percent Complete
5
703
about 2 years ago
over 1 year ago
1 times
75%
Timeline
Disclosure Date
2011-03-02
Description
Unknown / Incomplete
Classification
Location:
Local / Remote,
Context Dependent
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Solution:
Workaround
Exploit:
Exploit Private
Disclosure:
Uncoordinated Disclosure
Solution
Currently, there are no known upgrades or patches to correct this vulnerability. It is possible to correct the flaw by implementing the following workaround: set the kill-bit on the ePapyrusReader.ocx ActiveX Control. See Microsoft KB article 240797 for additional details.