Adobe Acrobat Reader Dc vulnerabilities

1,779 known vulnerabilities affecting adobe/acrobat_reader_dc.

Total CVEs
1,779
CISA KEV
7
actively exploited
Public exploits
26
Exploited in wild
5
Severity breakdown
CRITICAL449HIGH847MEDIUM451LOW32

Vulnerabilities

Page 72 of 89
CVE-2017-2943HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2943 [HIGH] CWE-119 CVE-2017-2943: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability when processing tags in TIFF images. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2953HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2953 [HIGH] CWE-119 CVE-2017-2953: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion module when processing a TIFF image. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2946HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2946 [HIGH] CWE-119 CVE-2017-2946: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability when parsing the segment for storing non-graphic information. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2958HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2958 [HIGH] CWE-416 CVE-2017-2958: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the JavaScript engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2961HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2961 [HIGH] CWE-416 CVE-2017-2961: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the XFA engine, related to validation functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2952HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2952 [HIGH] CWE-119 CVE-2017-2952: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow / underflow vulnerability in the image conversion module related to parsing tags in TIFF files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2962HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2962 [HIGH] CWE-704 CVE-2017-2962: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable type confusion vulnerability in the XSLT engine related to localization functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2964HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2964 [HIGH] CWE-119 CVE-2017-2964: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to the parsing of JPEG EXIF metadata. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2967HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2967 [HIGH] CWE-119 CVE-2017-2967: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the XFA engine related to a form's structure and organization. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2966HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2966 [HIGH] CWE-119 CVE-2017-2966: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the image conversion engine related to parsing malformed TIFF segments. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2940HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2940 [HIGH] CWE-119 CVE-2017-2940: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability when processing JPEG 2000 files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2951HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2951 [HIGH] CWE-416 CVE-2017-2951: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the XFA engine, related to sub-form functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2954HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2954 [HIGH] CWE-119 CVE-2017-2954: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion module when handling malformed TIFF images. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2963HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2963 [HIGH] CWE-119 CVE-2017-2963: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to handling of the color profile in a TIFF file. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2949HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2949 [HIGH] CWE-119 CVE-2017-2949: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the XSLT engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2939HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2939 [HIGH] CWE-119 CVE-2017-2939: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability when processing a malformed cross-reference table. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2948HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2948 [HIGH] CWE-119 CVE-2017-2948: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow / underflow vulnerability in the XFA engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2956HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2956 [HIGH] CWE-416 CVE-2017-2956: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the JavaScript engine, related to manipulation of the navigation pane. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2942HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2942 [HIGH] CWE-119 CVE-2017-2942: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability when processing TIFF image data. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2950HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2950 [HIGH] CWE-416 CVE-2017-2950: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the XFA engine, related to layout functionality. Successful exploitation could lead to arbitrary code execution.
nvd