Adobe Reader vulnerabilities

360 known vulnerabilities affecting adobe/reader.

Total CVEs
360
CISA KEV
0
Public exploits
10
Exploited in wild
1
Severity breakdown
CRITICAL199HIGH123MEDIUM31LOW7

Vulnerabilities

Page 1 of 18
CVE-2018-16042MEDIUMCVSS 6.5v11.0.10v11.0.232019-01-18
CVE-2018-16042 [MEDIUM] CWE-347 CVE-2018-16042: Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.2 Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a security bypass vulnerability. Successful exploitation could lead to information disclosure.
nvd
CVE-2017-3124CRITICALCVSS 9.8≥ 11.0.0, < 11.0.212017-08-11
CVE-2017-3124 [CRITICAL] CWE-119 CVE-2017-3124: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the picture exchange (PCX) file format parsing module. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11260HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11260 [HIGH] CWE-119 CVE-2017-11260: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private data interpreted as a GIF image. Successful exploitation could lead to arbitrary code e
nvd
CVE-2017-11224HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11224 [HIGH] CWE-416 CVE-2017-11224: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in the XFA layout engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11228HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11228 [HIGH] CWE-119 CVE-2017-11228: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing JPEG 2000 (JP2) code stream data. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11227HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11227 [HIGH] CWE-119 CVE-2017-11227: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private data. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3117HIGHCVSS 8.8≥ 11.0.0, < 11.0.212017-08-11
CVE-2017-3117 [HIGH] CWE-119 CVE-2017-3117: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable heap overflow vulnerability in the plugin that handles links within the PDF. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11271HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11271 [HIGH] CWE-119 CVE-2017-11271: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to transfer of pixel blocks. Successful exploitation could lead to arbitrary code
nvd
CVE-2017-11241HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11241 [HIGH] CWE-119 CVE-2017-11241: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable heap overflow vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to polygons. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11219HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11219 [HIGH] CWE-416 CVE-2017-11219: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in the XFA rendering engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11254HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11254 [HIGH] CWE-416 CVE-2017-11254: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability in the Acrobat/Reader's JavaScript engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3121HIGHCVSS 8.8≥ 11.0.0, < 11.0.212017-08-11
CVE-2017-3121 [HIGH] CWE-119 CVE-2017-3121: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the Enhanced Metafile Format (EMF) parser. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11270HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11270 [HIGH] CWE-119 CVE-2017-11270: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private data representing icons. Successful exploitation could lead to arbitrary code execution
nvd
CVE-2017-11263HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11263 [HIGH] CWE-119 CVE-2017-11263: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the internal data structure manipulation related to document encoding. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11256HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11256 [HIGH] CWE-416 CVE-2017-11256: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable use after free vulnerability when generating content using XFA layout engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11211HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11211 [HIGH] CWE-119 CVE-2017-11211: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable heap overflow vulnerability in the JPEG parser. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11259HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11259 [HIGH] CWE-119 CVE-2017-11259: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private data. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3016HIGHCVSS 8.8≥ 11.0.0, < 11.0.212017-08-11
CVE-2017-3016 [HIGH] CWE-119 CVE-2017-3016: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11261HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11261 [HIGH] CWE-119 CVE-2017-11261: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private data and the embedded TIF image. Successful exploitation could lead to arbitrary code e
nvd
CVE-2017-11212HIGHCVSS 8.8≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11212 [HIGH] CWE-119 CVE-2017-11212: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to text output. Successful exploitation could lead to arbitrary code execution.
nvd
1 / 18Next →