KLA11583
Multiple vulnerabilities in Adobe Acrobat and Adobe Acrobat Reader
Обновлено: 17/01/2020
Дата обнаружения
15/09/2019
Уровень угрозы
Critical
Описание

Multiple vulnerabilities were found in Adobe Acrobat and Adobe Acrobat Reader. Malicious users can exploit these vulnerabilities to execute arbitrary code, obtain sensitive information.

Below is a complete list of vulnerabilities:

  1. Type confusion vulnerability can be exploited to execute arbitrary code;
  2. Heap overflow vulnerabilities can be exploited to execute arbitrary code;
  3. Out-of-bound read vulnerability can be exploited to obtain sensitive information;
  4. Out-of-bounds write vulnerability can be exploited to execute arbitrary code;
  5. Use-after-free vulnerability can be exploited to execute arbitrary code;
  6. Out-of-bound read vulnerability can be exploited to obtain sensitive information;
  7. Untrusted pointer dereference vulnerabilities can be exploited to execute arbitrary code;
  8. Vulnerability related to Incomplete Implementation of Security Mechanism can be exploited to obtain sensitive information;
  9. Race Condition vulnerabilities can be exploited to execute arbitrary code;
  10. Out-of-bounds write vulnerability can be exploited to execute arbitrary code;
  11. Cross-site Scripting vulnerability can be exploited to obtain sensitive information;
  12. Use-after-free vulnerability can be exploited to execute arbitrary code;
  13. Buffer Overrun vulnerabilities can be exploited to execute arbitrary code.
Пораженные продукты

Adobe Acrobat DC (Continuous track) earlier than 2019.021.20047
Adobe Acrobat Reader DC (Continuous track) earlier than 2019.021.20047
Adobe Acrobat 2017 (Classic 2017 track) earlier than 2017.011.30150
Adobe Acrobat Reader 2017 (Classic 2017 track) earlier than 2017.011.30150
Adobe Acrobat (Classic 2015 track) earlier than 2015.006.30504
Adobe Acrobat Reader (Classic 2015 track) earlier than 2015.006.30504

Решение

Update to the latest version
Download Adobe Acrobat Reader DC

Первичный источник обнаружения
APSB19-49
Оказываемое влияние
?
ACE 
[?]

OSI 
[?]
Связанные продукты
Adobe Acrobat Reader DC Continuous
Adobe Acrobat Reader DC Classic
Adobe Acrobat DC Continuous
Adobe Acrobat DC Classic
Adobe Acrobat Reader 2017
Adobe Acrobat 2017
CVE-IDS
CVE-2019-81690.0Unknown
CVE-2019-81830.0Unknown
CVE-2019-82180.0Unknown
CVE-2019-81860.0Unknown
CVE-2019-82160.0Unknown
CVE-2019-82030.0Unknown
CVE-2019-81940.0Unknown
CVE-2019-81730.0Unknown
CVE-2019-81900.0Unknown
CVE-2019-82200.0Unknown
CVE-2019-82070.0Unknown
CVE-2019-80640.0Unknown
CVE-2019-81980.0Unknown
CVE-2019-81810.0Unknown
CVE-2019-81820.0Unknown
CVE-2019-82190.0Unknown
CVE-2019-82090.0Unknown
CVE-2019-82050.0Unknown
CVE-2019-82060.0Unknown
CVE-2019-82220.0Unknown
CVE-2019-82020.0Unknown
CVE-2019-82260.0Unknown
CVE-2019-81930.0Unknown
CVE-2019-81950.0Unknown
CVE-2019-81680.0Unknown
CVE-2019-82000.0Unknown
CVE-2019-81670.0Unknown
CVE-2019-81970.0Unknown
CVE-2019-81700.0Unknown
CVE-2019-82170.0Unknown
CVE-2019-81620.0Unknown
CVE-2019-81990.0Unknown
CVE-2019-81960.0Unknown
CVE-2019-81740.0Unknown
CVE-2019-81780.0Unknown
CVE-2019-82250.0Unknown
CVE-2019-81600.0Unknown
CVE-2019-82240.0Unknown
CVE-2019-81770.0Unknown
CVE-2019-82040.0Unknown
CVE-2019-82100.0Unknown
CVE-2019-81640.0Unknown
CVE-2019-81850.0Unknown
CVE-2019-82120.0Unknown
CVE-2019-82010.0Unknown
CVE-2019-82150.0Unknown
CVE-2019-81650.0Unknown
CVE-2019-81870.0Unknown
CVE-2019-81880.0Unknown
CVE-2019-82080.0Unknown
CVE-2019-82230.0Unknown
CVE-2019-81840.0Unknown
CVE-2019-81910.0Unknown
CVE-2019-81720.0Unknown
CVE-2019-81750.0Unknown
CVE-2019-81800.0Unknown
CVE-2019-81790.0Unknown
CVE-2019-81630.0Unknown
CVE-2019-81710.0Unknown
CVE-2019-81610.0Unknown
CVE-2019-82210.0Unknown
CVE-2019-81890.0Unknown
CVE-2019-81760.0Unknown
CVE-2019-82140.0Unknown
CVE-2019-81920.0Unknown
CVE-2019-82130.0Unknown
CVE-2019-82110.0Unknown
CVE-2019-81660.0Unknown