CVE-2005-1347
Last modified
CVE-2005-1347 is a vulnerability of currently unknown severity. ** UNVERIFIABLE ** NOTE: this issue describes a problem that can not be independently verified as of 20050421. Adobe Acrobat reader (AcroRd32.exe) 6.0 and earlier allows remote attackers to cause a denial of service ("Invalid-ID-Handle-Error" error) and modify memory beginning at a particular address, possibly allowing the execution of arbitrary code, via a crafted PDF file. EPSS estimates a 5.24% chance of exploitation in the next 30 days.
Description
** UNVERIFIABLE ** NOTE: this issue describes a problem that can not be independently verified as of 20050421. Adobe Acrobat reader (AcroRd32.exe) 6.0 and earlier allows remote attackers to cause a denial of service ("Invalid-ID-Handle-Error" error) and modify memory beginning at a particular address, possibly allowing the execution of arbitrary code, via a crafted PDF file. NOTE: the vendor has stated that the reporter refused to provide sufficient details to confirm the issue. In addition, due to the lack of details in the original advisory, an independent verification is not possible. Finally, the reliability of the original reporter is unknown. This item has only been assigned a CVE identifier for tracking purposes, and to serve as a concrete example of the newly defined UNVERIFIABLE and PRERELEASE content decisions in CVE, which must be discussed by the Editorial Board. Without additional details or independent verification by reliable sources, it is highly likely that this item will be REJECTED.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Acrobat Reader | 3.0 |
| Adobe | Acrobat Reader | 5.0.10 |
| Adobe | Acrobat Reader | 6.0 |
References
- http://www.alphahackers.com/advisories/acrobat6.txtURL Repurposed
- http://www.alphahackers.com/advisories/acrobat6.txtURL Repurposed
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-1347?
How severe is CVE-2005-1347?
How do I fix CVE-2005-1347?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-1341Apple Terminal 1.4.4 allows attackers to execute arbitrary c…
- CVE-2005-1342The x-man-page: URI handler for Apple Terminal 1.4.4 in Mac …
- CVE-2005-1343Stack-based buffer overflow in the VPN daemon (vpnd) for Mac…
- CVE-2005-1344Buffer overflow in htdigest in Apache 2.0.52 may allow attac…
- CVE-2005-1345Squid 2.5.STABLE9 and earlier does not trigger a fatal error…
- CVE-2005-1346Multiple Symantec AntiVirus products, including Norton AntiV…
- CVE-2005-1348Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 an…
- CVE-2005-1349Buffer overflow in Convert-UUlib (Convert::UUlib) before 1.0…
- CVE-2005-1350The ad.cgi script allows remote attackers to read arbitrary …
- CVE-2005-1351The ad.cgi script allows remote attackers to execute arbitra…
- CVE-2005-1352Cross-site scripting (XSS) vulnerability in the ad.cgi scrip…
- CVE-2005-1353The forum.pl script allows remote attackers to read arbitrar…
Are you affected by CVE-2005-1347?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
