cbcvebase.

Adobe Reader vulnerabilities

359 known vulnerabilities affecting adobe/reader.

Total CVEs
359
CISA KEV
0
Public exploits
9
Exploited in wild
2
Severity breakdown
CRITICAL198HIGH123MEDIUM31LOW7

Vulnerabilities

Page 14 of 18
CVE-2016-6958P3CRITICALCVSS 9.8≤ 11.0.172016-10-13
CVE-2016-6958 [CRITICAL] CWE-284 CVE-2016-6958: Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to bypass intended access restrictions via unspecified vectors.
nvd
CVE-2009-1062P3CRITICALCVSS 9.3v3.0v4.0+30 more2009-03-25
CVE-2009-1062 [CRITICAL] CVE-2009-1062: Adobe Acrobat Reader 9 before 9.1, 8 before 8.1.4, and 7 before 7.1.1 might allow remote attackers t Adobe Acrobat Reader 9 before 9.1, 8 before 8.1.4, and 7 before 7.1.1 might allow remote attackers to trigger memory corruption and possibly execute arbitrary code via unknown attack vectors related to JBIG2, a different vulnerability than CVE-2009-0193 and CVE-2009-1061.
nvd
CVE-2017-2958P3HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2958 [HIGH] CWE-416 CVE-2017-2958: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the JavaScript engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2952P3HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2952 [HIGH] CWE-119 CVE-2017-2952: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow / underflow vulnerability in the image conversion module related to parsing tags in TIFF files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2942P3HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2942 [HIGH] CWE-119 CVE-2017-2942: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability when processing TIFF image data. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3009P3HIGHCVSS 7.5≥ 11.0.0, ≤ 11.0.182017-03-31
CVE-2017-3009 [HIGH] CWE-125 CVE-2017-3009: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow vulnerability in the JPEG2000 parser. Successful exploitation could lead to information disclosure.
nvd
CVE-2011-4374P3CRITICALCVSS 9.3≥ 8.0, ≤ 8.3≥ 10.0, ≤ 10.1+1 more2012-01-19
CVE-2011-4374 [CRITICAL] CWE-190 CVE-2011-4374: Integer overflow in Adobe Reader 9.x before 9.4.6 on Linux allows attackers to execute arbitrary cod Integer overflow in Adobe Reader 9.x before 9.4.6 on Linux allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2017-3011P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3011 [HIGH] CWE-190 CVE-2017-3011: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable integer overflow vulnerability in the CCITT fax PDF filter. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2970P3HIGHCVSS 7.8≤ 11.0.182017-01-24
CVE-2017-2970 [HIGH] CWE-119 CVE-2017-2970: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the XSLT engine related to template manipulation. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2945P3HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2945 [HIGH] CWE-119 CVE-2017-2945: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability when parsing TIFF image files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3034P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3034 [HIGH] CWE-191 CVE-2017-3034: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable integer overflow vulnerability in the XML Forms Architecture (XFA) engine, related to layout functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3050P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3050 [HIGH] CWE-787 CVE-2017-3050: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to parsing of GIF files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3051P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3051 [HIGH] CWE-125 CVE-2017-3051: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to parsing of JPEG files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11209P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11209 [MEDIUM] CWE-119 CVE-2017-11209: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability that occurs when reading a JPEG file embedded within XML Paper Specification (XPS) file. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11210P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11210 [MEDIUM] CWE-119 CVE-2017-11210: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the font parsing, where the font is embedded in the XML Paper Specification (XPS) file. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2948P3HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2948 [HIGH] CWE-119 CVE-2017-2948: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow / underflow vulnerability in the XFA engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11244P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11244 [MEDIUM] CWE-119 CVE-2017-11244: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to transformation of blocks of pixels. Successful exploitation could lead to arb
nvd
CVE-2011-4371P3HIGHCVSS 7.5≤ 10.1.1≤ 9.4.6+3 more2012-01-10
CVE-2011-4371 [HIGH] CWE-787 CVE-2011-4371: Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
nvd
CVE-2011-4370P3HIGHCVSS 7.5≤ 10.1.1≤ 9.4.6+3 more2012-01-10
CVE-2011-4370 [HIGH] CWE-787 CVE-2011-4370: Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-4372 and CVE-2011-4373.
nvd
CVE-2017-3024P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3024 [HIGH] CWE-119 CVE-2017-3024: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability when manipulating PDF annotations. Successful exploitation could lead to arbitrary code execution.
nvd
Adobe Reader vulnerabilities | cvebase