CVE-2018-4885
published 2018-02-27CVE-2018-4885: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions…
medium6.5CVSS 3.0
AVNACLPRNUIRSUCHINAN
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of Enhanced Metafile Format processing engine (within the image conversion module). A successful attack can lead to sensitive data exposure.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | acrobat | 17.0 – 17.011.30070 | — |
| adobe | acrobat_dc | - – 18.009.20050 | — |
| adobe | acrobat_dc | 15.0 – 15.006.30394 | — |
| adobe | acrobat_reader | 17.0 – 17.011.30070 | — |
| adobe | acrobat_reader_dc | - – 18.009.20050 | — |
| adobe | acrobat_reader_dc | 15.0 – 15.006.30394 | — |
No detection rules found.
No public exploits indexed.
http://www.securityfocus.com/bid/102996http://www.securitytracker.com/id/1040364https://helpx.adobe.com/security/products/acrobat/apsb18-02.htmlhttps://www.zerodayinitiative.com/advisories/ZDI-18-182/http://www.securityfocus.com/bid/102996http://www.securitytracker.com/id/1040364https://helpx.adobe.com/security/products/acrobat/apsb18-02.html
2018-02-27
Published