Buffer Overflow in Adobe Acrobat and Reader Affects Multiple Versions
CVE-2017-16368
Key Information:
- Vendor
Adobe
- Vendor
- CVE Published:
- 9 December 2017
What is CVE-2017-16368?
This vulnerability in Adobe Acrobat and Reader, discovered in various versions, results from a stack-based buffer overflow in the internal Unicode string processing component. It occurs when maliciously crafted PDF files exploit improper checks on pointer offsets. This can lead to out-of-bounds memory access, enabling attackers to execute arbitrary code on the affected systems if they manage to control the memory accessed during the manipulation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Adobe Acrobat Reader 2017.012.20098 and earlier , 2017.011.30066 and earlier , 2015.006.30355 and earlier , 11.0.22 and earlier Adobe Acrobat Reader 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, 11.0.22 and earlier versions
References
EPSS Score
18% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved