Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a security bypass vulnerability. Successful exploitation could lead to information disclosure.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/106159 | third party advisory vdb entry |
https://helpx.adobe.com/security/products/acrobat/apsb18-41.html | patch vendor advisory |
https://pdf-insecurity.org/signature/evaluation_2018.html | third party advisory |
https://pdf-insecurity.org/signature/signature.html | third party advisory |
https://www.pdfa.org/recently-identified-pdf-digital-signature-vulnerabilities/ | third party advisory |