CVE-2013-2729
KEVmassInteger Overflow Remote Code Execution in Adobe Reader and Acrobat
CISA: Adobe Reader and Acrobat Arbitrary Integer Overflow Vulnerability
CVE-2013-2729 is an integer overflow (numeric error, CWE-189) in Adobe Reader and Acrobat that can be triggered when the application processes specially crafted PDF content. By causing the overflow to corrupt memory, an attacker can execute arbitrary code with the privileges of the user running Reader or Acrobat. Any user or organization running an affected version of Adobe Reader or Acrobat is exposed; the source data does not specify exact affected version ranges, and no CVSS score is available in this dataset. Exploitation is confirmed: CISA added the flaw to the Known Exploited Vulnerabilities catalog on 2022-03-28 (ransomware use unknown), EPSS estimates a 66.6% probability of exploitation within 30 days (99th percentile), and no public proof-of-concept is known.
What to do: Apply updates for Adobe Reader and Acrobat per vendor instructions (the CISA KEV required action); because the flaw dates to 2013, any currently supported Adobe Acrobat/Reader release should already include the fix, so prioritize identifying and updating legacy Reader/Acrobat installations on user endpoints. Until patched, mitigate by using the reader's sandboxed/protected viewing mode and cautioning users against opening PDFs from untrusted sources.
| Adobe Reader | — |
| Adobe Acrobat | — |
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
Integer overflow vulnerability in Adobe Reader and Acrobat allows attackers to execute remote code.
- Affected
- Adobe Reader and Acrobat
- Required action
- Apply updates per vendor instructions.
- Due date
- Ransomware use
- Unknown
- Vendors
- Adobe
- Products
- Reader and Acrobat
- Weakness
- CWE-189