cbcvebase.
CVE-2025-27160
published 2025-03-11

CVE-2025-27160: Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected

6 ranges
VendorProductVersion rangeFixed in
adobeacrobat>= 20.001.30002 < 20.005.3076320.005.30763
adobeacrobat>= 24.0.0 < 24.001.3023524.001.30235
adobeacrobat_dc>= 15.008.20082 < 25.001.2043225.001.20432
adobeacrobat_reader<= 25.001.20428
adobeacrobat_reader>= 20.001.30002 < 20.005.3076320.005.30763
adobeacrobat_reader_dc>= 15.008.20082 < 25.001.2043225.001.20432