Kaspersky ID:
KLA12501
Detect Date:
04/12/2022
Updated:
01/25/2024

Description

Multiple vulnerabilities were found in Adobe Acrobat and Adobe Acrobat Reader. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code, obtain sensitive information, bypass security restrictions, gain privileges.

Below is a complete list of vulnerabilities:

  1. Out of bounds memory read vulnerability can be exploited to cause denial of service.
  2. Use after free vulnerability can be exploited to execute arbitrary code.
  3. Use after free vulnerability can be exploited to cause denial of service.
  4. Out of bounds memory write vulnerability can be exploited to execute arbitrary code.
  5. Uninitialized pointer vulnerability can be exploited to execute arbitrary code.
  6. Buffer overflow vulnerability can be exploited to execute arbitrary code.
  7. Out of bounds memory read vulnerability can be exploited to execute arbitrary code.
  8. Secure design principles vulnerability can be exploited to execute arbitrary code.
  9. Heap-based buffer overflow vulnerability can be exploited to execute arbitrary code.
  10. Integrity check vulnerability can be exploited remotely to gain privileges.
  11. Use after free vulnerability can be exploited execute arbitrary code.
  12. Out of bounds read vulnerability can be exploited to obtain sensitive information.
  13. Use after free vulnerability can be exploited obtain sensitive information.
  14. Out of bounds write vulnerability can be exploited to execute arbitrary code.

Original advisories

Related products

CVE list

  • CVE-2022-28248
    high
  • CVE-2022-28265
    high
  • CVE-2022-28266
    high
  • CVE-2022-27790
    critical
  • CVE-2022-24101
    warning
  • CVE-2022-28250
    high
  • CVE-2022-27788
    critical
  • CVE-2022-28261
    high
  • CVE-2022-27796
    critical
  • CVE-2022-28253
    high
  • CVE-2022-28249
    high
  • CVE-2022-27794
    critical
  • CVE-2022-28238
    critical
  • CVE-2022-28259
    high
  • CVE-2022-28237
    critical
  • CVE-2022-28233
    critical
  • CVE-2022-28263
    high
  • CVE-2022-27799
    critical
  • CVE-2022-27791
    critical
  • CVE-2022-28262
    high
  • CVE-2022-27786
    critical
  • CVE-2022-28230
    critical
  • CVE-2022-28258
    high
  • CVE-2022-28251
    high
  • CVE-2022-28246
    high
  • CVE-2022-28241
    critical
  • CVE-2022-27798
    critical
  • CVE-2022-28242
    critical
  • CVE-2022-28245
    high
  • CVE-2022-28254
    high
  • CVE-2022-28244
    high
  • CVE-2022-28255
    high
  • CVE-2022-28264
    high
  • CVE-2022-24104
    critical
  • CVE-2022-28260
    high
  • CVE-2022-24102
    critical
  • CVE-2022-28231
    critical
  • CVE-2022-28235
    critical
  • CVE-2022-27801
    critical
  • CVE-2022-28240
    critical
  • CVE-2022-27787
    critical
  • CVE-2022-28252
    warning
  • CVE-2022-28234
    critical
  • CVE-2022-28257
    high
  • CVE-2022-24103
    critical
  • CVE-2022-28236
    critical
  • CVE-2022-28232
    critical
  • CVE-2022-28239
    critical
  • CVE-2022-27800
    critical
  • CVE-2022-28267
    high
  • CVE-2022-27795
    critical
  • CVE-2022-28243
    critical
  • CVE-2022-27785
    critical
  • CVE-2022-28247
    high
  • CVE-2022-28256
    high
  • CVE-2022-27792
    critical
  • CVE-2022-28269
    warning
  • CVE-2022-27793
    critical
  • CVE-2022-27802
    critical
  • CVE-2022-28268
    warning
  • CVE-2022-27797
    critical
  • CVE-2022-27789
    critical
  • CVE-2022-28838
    critical
  • CVE-2022-28837
    high
  • CVE-2022-35672
    critical
  • CVE-2022-44518
    unknown
  • CVE-2022-44515
    unknown
  • CVE-2022-44517
    unknown
  • CVE-2022-44519
    unknown
  • CVE-2022-44513
    unknown
  • CVE-2022-44516
    unknown
  • CVE-2022-44512
    unknown
  • CVE-2022-44520
    unknown
  • CVE-2022-44514
    unknown

Read more

Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com

Found an inaccuracy in the description of this vulnerability? Let us know!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Learn more
New Kaspersky!
Your digital life deserves complete protection!
Learn more
Confirm changes?
Your message has been sent successfully.