Release date:
Updated on:
Affected Systems:
Adobe Illustrator CS5.5
Adobe Illustrator CS5
Adobe Illustrator CS4
Adobe Illustrator CS3
Adobe Illustrator CS2
Adobe Illustrator CS
Unaffected system:
Adobe Illustrator CS6
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53422
Cve id: CVE-2012-0780, CVE-2012-2023, CVE-2012-2024, CVE-2012-2025, CVE-2012-2026
Adobe Illustrator is a vector-Based Graphics Production software developed by Adobe Systems. It was originally designed and developed for Apple's macinta computer in 1986 and was released in January 1987. Before that, it was only a font development and PostScript editing software in Adobe.
In versions earlier than Adobe Illustrator CS5.5, multiple memory corruption vulnerabilities exist. Attackers can exploit these vulnerabilities to execute arbitrary code.
<* Source: Felipe Andres Manzano
Link: http://www.adobe.com/support/security/bulletins/apsb12-10.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (apsb12-10) and patches for this:
Apsb12-10: Security Bulletin for Adobe Illustrator
Link: http://www.adobe.com/support/security/bulletins/apsb12-10.html