Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/104172 | third party advisory vdb entry |
https://helpx.adobe.com/security/products/acrobat/apsb18-09.html | patch vendor advisory |
http://www.securitytracker.com/id/1040920 | third party advisory vdb entry |