KLA11780
Multiple vulnerabilities in Adobe Acrobat and Adobe Acrobat Reader
Обновлено: 22/05/2020
Дата обнаружения
12/05/2020
Уровень угрозы
Critical
Описание

Multiple vulnerabilities were found in in Adobe Acrobat and Adobe Acrobat Reader. Malicious users can exploit these vulnerabilities to obtain sensitive information, bypass security restrictions, execute arbitrary code, cause denial of service.

Below is a complete list of vulnerabilities:

  1. Memory access vulnerability can be exploited to obtain sensitive information.
  2. Race condition vulnerability can be exploited to bypass security restrictions.
  3. Security vulnerability can be exploited to bypass security restrictions.
  4. Use after free vulnerability can be exploited to execute arbitrary code.
  5. Buffer vulnerability can be exploited to execute arbitrary code.
  6. Out of bound read vulnerability can be exploited to obtain sensitive information.
  7. Stack exhaustion vulnerability can be exploited to cause denial of service.
  8. Out of bounds write vulnerability can be exploited to execute arbitrary code.
  9. Null pointer vulnerability can be exploited to cause denial of service.
  10. Heap overflow vulnerability can be exploited to execute arbitrary code.
Пораженные продукты

Adobe Acrobat DC Continuous earlier than 2020.009.20063
Adobe Acrobat 2017 Classic earlier than 2017.011.30171
Adobe Acrobat 2015 Classic earlier than 2015.006.30523
Adobe Acrobat Reader DC Continuous earlier than 2020.009.20063
Adobe Acrobat Reader 2017 Classic earlier than 2017.011.30171
Adobe Acrobat Reader 2015 Classic earlier than 2015.006.30523

Решение

Update to the latest version
Download Adobe Acrobat Reader DC

Первичный источник обнаружения
APSB20-24
Оказываемое влияние
?
ACE 
[?]

OSI 
[?]

DoS 
[?]

SB 
[?]
Связанные продукты
Adobe Acrobat Reader DC Continuous
Adobe Acrobat Reader DC Classic
Adobe Acrobat DC Continuous
Adobe Acrobat DC Classic
Adobe Acrobat Reader 2017
Adobe Acrobat 2017
CVE-IDS
CVE-2020-95980.0Unknown
CVE-2020-95930.0Unknown
CVE-2020-96150.0Unknown
CVE-2020-96130.0Unknown
CVE-2020-96070.0Unknown
CVE-2020-95950.0Unknown
CVE-2020-96040.0Unknown
CVE-2020-96020.0Unknown
CVE-2020-96060.0Unknown
CVE-2020-96030.0Unknown
CVE-2020-95990.0Unknown
CVE-2020-96110.0Unknown
CVE-2020-95940.0Unknown
CVE-2020-96140.0Unknown
CVE-2020-96080.0Unknown
CVE-2020-96100.0Unknown
CVE-2020-95960.0Unknown
CVE-2020-96010.0Unknown
CVE-2020-96000.0Unknown
CVE-2020-96050.0Unknown
CVE-2020-95920.0Unknown
CVE-2020-96090.0Unknown
CVE-2020-95970.0Unknown
CVE-2020-96120.0Unknown