Memory Corruption Vulnerability in Adobe Acrobat Reader
CVE-2017-2953

7.8HIGH

Summary

Adobe Acrobat Reader is affected by a memory corruption vulnerability in its image conversion module, specifically when processing TIFF images. This flaw allows attackers to exploit the vulnerability, potentially resulting in arbitrary code execution on the user's system. Users running Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, or 11.0.18 and earlier are particularly at risk if they open a malicious TIFF image. It is essential for users to prioritize updates to mitigate this risk.

Affected Version(s)

Adobe Acrobat Reader 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier. Adobe Acrobat Reader 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.