Kaspersky ID:
KLA10734
Detect Date:
01/12/2016
Updated:
01/22/2024

Description

Multiple serious vulnerabilities have been found in Adobe products. Malicious users can exploit these vulnerabilities to cause denial of service, bypass security restrictions or execute arbitrary code.

Below is a complete list of vulnerabilities

  1. Untrusted search path vulnerability at Adobe Download Manager can be exploited locally to gain privileges via a specially designed resources;
  2. An unknown vulnerability can be exploited to cause denial of service or execute arbitrary code;
  3. Improper Global object handling can be exploited to bypass JavaScript API restrictions;
  4. Use-after-free vulnerability at Search, Doc and AGM can be exploited to execute arbitrary code;
  5. Double free vulnerability can be exploited to execute arbitrary code via a specially designed ExtGState dictionary.

Original advisories

Related products

CVE list

  • CVE-2016-0931
    high
  • CVE-2016-0932
    high
  • CVE-2016-0933
    critical
  • CVE-2016-0934
    high
  • CVE-2016-0935
    high
  • CVE-2016-0936
    critical
  • CVE-2016-0937
    critical
  • CVE-2016-0938
    critical
  • CVE-2016-0939
    high
  • CVE-2016-0940
    critical
  • CVE-2016-0941
    high
  • CVE-2016-0942
    critical
  • CVE-2016-0943
    high
  • CVE-2016-0944
    critical
  • CVE-2016-0945
    critical
  • CVE-2016-0946
    critical
  • CVE-2016-0947
    high

Read more

Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com

Found an inaccuracy in the description of this vulnerability? Let us know!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Learn more
New Kaspersky!
Your digital life deserves complete protection!
Learn more
Confirm changes?
Your message has been sent successfully.