cbcvebase.
CVE-2024-39425
published 2024-08-14

CVE-2024-39425: Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition…

high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could lead to privilege escalation. Exploitation of this issue require local low-privilege access to the affected system and attack complexity is high.

Affected

6 ranges
VendorProductVersion rangeFixed in
adobeacrobat>= 20.001.30005 < 20.005.3065520.005.30655
adobeacrobat>= 24.001.20604 < 24.001.3015924.001.30159
adobeacrobat_dc>= 15.008.20082 < 24.002.2100524.002.21005
adobeacrobat_reader<= 24.001.30123
adobeacrobat_reader>= 20.001.3005 < 20.005.3065520.005.30655
adobeacrobat_reader_dc>= 15.008.20082 < 24.002.2100524.002.21005