CVE-2011-0586Improper Input Validation in Adobe Acrobat

Severity
9.3CRITICALNVD
EPSS
2.8%
top 13.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 10
Latest updateMay 14

Description

Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X do not properly validate unspecified input data, which allows attackers to execute arbitrary code via unknown vectors.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages2 packages

NVDadobe/acrobat_reader27 versions+26
NVDadobe/acrobat28 versions+27

Patches

🔴Vulnerability Details

1
GHSA
GHSA-29c8-3p4j-qm8x: Adobe Reader and Acrobat 102022-05-14

📋Vendor Advisories

1
Red Hat
acroread: critical APSB11-032011-02-08

💬Community

1
Bugzilla
CVE-2011-0562 CVE-2011-0563 CVE-2011-0565 CVE-2011-0566 CVE-2011-0567 CVE-2011-0585 CVE-2011-0586 CVE-2011-0589 CVE-2011-0590 CVE-2011-0591 CVE-2011-0592 CVE-2011-0593 CVE-2011-0594 CVE-2011-0595 acro2011-02-08
CVE-2011-0586 — Improper Input Validation in Adobe | cvebase