Adobe Acrobat vulnerabilities
1,356 known vulnerabilities affecting adobe/acrobat.
Total CVEs
1,356
CISA KEV
23
actively exploited
Public exploits
43
Exploited in wild
27
Severity breakdown
CRITICAL540HIGH476MEDIUM316LOW24
Vulnerabilities
Page 31 of 68
CVE-2017-3040HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3040 [HIGH] CWE-119 CVE-2017-3040: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JBIG2 image compression module. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3023HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3023 [HIGH] CWE-119 CVE-2017-3023: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JPEG 2000 code-stream tile functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3027HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3027 [HIGH] CWE-416 CVE-2017-3027: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability in the XFA module, related to the choiceList element. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3012HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3012 [HIGH] CWE-427 CVE-2017-3012: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an insecure library loading (DLL hijacking) vulnerability in the OCR plugin.
nvd
CVE-2017-3057HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3057 [HIGH] CWE-416 CVE-2017-3057: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability in the JavaScript API related to the collaboration functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3065HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3065 [HIGH] CWE-119 CVE-2017-3065: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the font manipulation functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3041HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3041 [HIGH] CWE-119 CVE-2017-3041: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability when parsing font data in the MakeAccessible plugin. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3056HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3056 [HIGH] CWE-119 CVE-2017-3056: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JavaScript engine, related to string manipulation. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3049HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3049 [HIGH] CWE-119 CVE-2017-3049: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable heap overflow vulnerability in the image conversion engine, related to internal tile manipulation in TIFF files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3046MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3046 [MEDIUM] CWE-125 CVE-2017-3046: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser, related to contiguous code-stream parsing.
nvd
CVE-2017-3045MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3045 [MEDIUM] CWE-125 CVE-2017-3045: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser, related to the palette box.
nvd
CVE-2017-3043MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3043 [MEDIUM] CWE-200 CVE-2017-3043: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the collaboration functionality.
nvd
CVE-2017-3053MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3053 [MEDIUM] CWE-125 CVE-2017-3053: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the image conversion engine, related to parsing of the APP13 segment in JPEG files.
nvd
CVE-2017-3052MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3052 [MEDIUM] CWE-125 CVE-2017-3052: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the image conversion engine, related to parsing of EMF - enhanced meta file format.
nvd
CVE-2017-3032LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3032 [LOW] CWE-125 CVE-2017-3032: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 code-stream parser.
nvd
CVE-2017-3021LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3021 [LOW] CWE-125 CVE-2017-3021: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser engine.
nvd
CVE-2017-3020LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3020 [LOW] CWE-119 CVE-2017-3020: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the weblink module.
nvd
CVE-2017-3031LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3031 [LOW] CWE-125 CVE-2017-3031: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the XSLT engine.
nvd
CVE-2017-3022LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3022 [LOW] CWE-125 CVE-2017-3022: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when parsing the header of a JPEG 2000 file.
nvd
CVE-2017-3029LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3029 [LOW] CWE-119 CVE-2017-3029: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when handling a JPEG 2000 code-stream.
nvd