Buffer Overflow Detected in Adobe Reader | Internet News

Buffer Overflow Detected in Adobe Reader

Written By
Ryan Naraine
Ryan Naraine
Mar 4, 2004
1 minute read

Security researchers on Thursday warned of a “high risk” buffer overflow flaw in some versions of the Adobe Acrobat Reader that put users at risk of system takeover.

British security consultants NGSSoftware detected the vulnerability in the XML forms data format (“.xfdf”) and warned that a malicious attacker could cause a buffer overflow by tricking a user into viewing a specially crafted XFDF document.

The vulnerability affects Adobe Acrobat Reader 5.x. Adobe has corrected the flaw and is urging users to upgrade to the newer Adobe 6.0 software.

According to the NGSSoftware advisory, the flaw is particularly serious because XFDF files with a “.xfdf” extension are rendered automatically on download when using applications like Microsoft’s Internet Explorer browser.

“Rendering the file will trigger the overflow. A user would need to be enticed to a web site that hosted a malicious xfdf file or sent one via e-mail,” the company explained.

The Adobe Acrobat Reader is widely used to view and render PDF
documents.

Internet News Logo

InternetNews is a source of industry news and intelligence for IT professionals from all branches of the technology world. InternetNews focuses on helping professionals grow their knowledge base and authority in their field with the top news and trends in Software, IT Management, Networking & Communications, and Small Business.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.