CVE-2017-2963
published 2017-01-11CVE-2017-2963: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in…
PriorityP341high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
3.62%
88.3th percentile
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to handling of the color profile in a TIFF file. Successful exploitation could lead to arbitrary code execution.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | acrobat | <= 11.0.18 | — |
| adobe | acrobat_dc | <= 15.006.30244 | — |
| adobe | acrobat_dc | <= 15.020.20042 | — |
| adobe | acrobat_reader_dc | <= 15.006.30244 | — |
| adobe | acrobat_reader_dc | <= 15.020.20042 | — |
| adobe | reader | <= 11.0.18 | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rr36-mcmx-xpc7: Adobe Acrobat Reader versions 15
ghsa_unreviewed·2022-05-17
CVE-2017-2963 [HIGH] CWE-119 GHSA-rr36-mcmx-xpc7: Adobe Acrobat Reader versions 15
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to handling of the color profile in a TIFF file. Successful exploitation could lead to arbitrary code execution.
Kernel
x86/entry: Add STACKLEAK erasing the kernel stack at the end of syscalls
kernel_security·2018-08-17·CVSS 6.2
CVE-2010-2963 [MEDIUM] x86/entry: Add STACKLEAK erasing the kernel stack at the end of syscalls
x86/entry: Add STACKLEAK erasing the kernel stack at the end of syscalls
The STACKLEAK feature (initially developed by PaX Team) has the following
benefits:
1. Reduces the information that can be revealed through kernel stack leak
bugs. The idea of erasing the thread stack at the end of syscalls is
similar to CONFIG_PAGE_POISONING and memzero_explicit() in kernel
crypto, which all comply with FDP_RIP.2 (Full Residual Information
Protection) of the Common Criteria standard.
2. Blocks some uninitialized stack variable attacks (e.g. CVE-2017-17712,
CVE-2010-2963). That kind of bugs should be killed by improving C
compilers in future, which might take a long time.
This commit introduces the code filling the used part of the kernel
stack with a poison value before returning to userspace. Fu
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/95345http://www.securitytracker.com/id/1037574http://www.zerodayinitiative.com/advisories/ZDI-17-027https://helpx.adobe.com/security/products/acrobat/apsb17-01.htmlhttp://www.securityfocus.com/bid/95345http://www.securitytracker.com/id/1037574http://www.zerodayinitiative.com/advisories/ZDI-17-027https://helpx.adobe.com/security/products/acrobat/apsb17-01.html
2017-01-11
Published