Memory Corruption Vulnerability in Adobe Acrobat Reader
CVE-2017-2963

7.8HIGH

Summary

Adobe Acrobat Reader contains a vulnerability in its image conversion engine related to the management of color profiles in TIFF files. This flaw could be exploited by an attacker to execute arbitrary code on the victim's machine, potentially leading to unauthorized access or control over the affected system. It is essential for users to ensure their Adobe Acrobat Reader is updated to mitigate any risks associated with this vulnerability.

Affected Version(s)

Adobe Acrobat Reader 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier. Adobe Acrobat Reader 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.