Google Project Zero: 15 vulnerabilities in Adobe Reader and Windows

Ο Mateusz Jurczyk από το revealed 15(!) remote code execution vulnerabilities included in a single devastating hack against Adobe Reader and Windows.security hack

The security researcher (@j00ru) of Google Project Zero presented the findings at security Recon entitled A story of cross-software ownership, shared codebases and advanced exploitation [PDF ] without big fanfare and published a PoC demonstration video.

The most important vulnerabilities are in 32-bit systems (CVE-2.015 to 3.052) and 64-bit systems (CVE-2015-0093 vulnerability).

Also in the Adobe Type Manager font (ATMFD.dll) font that has a section that supports 1 and 2 type fonts in the Windows kernel from Windows NT 4.0.

Jurczyk states that BLEND exploits are "absolutely reliable" and are related to the management of CharStrings which are responsible for designing the shape of each letter to a specific size.

A summary of the vulnerabilities discovered by Jurczyk is available in the image below (click to enlarge).

Google Project Zero

Each of 15's vulnerabilities discovered by Jurczyk is from a seemingly unexplored area and can cause remote code execution or privilege escalation in Adobe Reader or in the Windows kernel.

Microsoft and Adobe have made it available directly three updates.

See PoC

Information-Photos: ElReg

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).