Adobe Reader vulnerabilities
359 known vulnerabilities affecting adobe/reader.
Total CVEs
359
CISA KEV
0
Public exploits
9
Exploited in wild
2
Severity breakdown
CRITICAL198HIGH123MEDIUM31LOW7
Vulnerabilities
Page 15 of 18
CVE-2017-3057P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3057 [HIGH] CWE-416 CVE-2017-3057: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability in the JavaScript API related to the collaboration functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11217P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11217 [MEDIUM] CWE-119 CVE-2017-11217: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to drawing of Unicode text strings. Successful exploitation could lead to arbitr
nvd
CVE-2017-3014P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3014 [HIGH] CWE-416 CVE-2017-3014: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability in XML Forms Architecture (XFA) related to reset form functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3035P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3035 [HIGH] CWE-416 CVE-2017-3035: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability in the XML Forms Architecture (XFA) engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3036P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3036 [HIGH] CWE-787 CVE-2017-3036: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in image conversion related to processing of the PCX (picture exchange) file format. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3023P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3023 [HIGH] CWE-119 CVE-2017-3023: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JPEG 2000 code-stream tile functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3028P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3028 [HIGH] CWE-119 CVE-2017-3028: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the image conversion module, related to processing of TIFF files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3015P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3015 [HIGH] CWE-119 CVE-2017-3015: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JBIG2 parsing functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3018P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3018 [HIGH] CWE-119 CVE-2017-3018: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the renderer functionality. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3026P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3026 [HIGH] CWE-416 CVE-2017-3026: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability when manipulating an internal data structure. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3038P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3038 [HIGH] CWE-119 CVE-2017-3038: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability when parsing TTF (TrueType font format) stream data. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2963P3HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2963 [HIGH] CWE-119 CVE-2017-2963: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to handling of the color profile in a TIFF file. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3025P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3025 [HIGH] CWE-119 CVE-2017-3025: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability related to internal object representation manipulation. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3054P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3054 [HIGH] CWE-119 CVE-2017-3054: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to manipulation of EMF files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2967P3HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2967 [HIGH] CWE-119 CVE-2017-2967: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the XFA engine related to a form's structure and organization. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11230P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11230 [MEDIUM] CWE-119 CVE-2017-11230: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the JPEG 2000 engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11236P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11236 [MEDIUM] CWE-119 CVE-2017-11236: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the internal handling of UTF-16 literal strings. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3047P3HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3047 [HIGH] CWE-416 CVE-2017-3047: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability in the JavaScript engine's annotation-related API. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-11248P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11248 [MEDIUM] CWE-119 CVE-2017-11248: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to pixel block transfer. Successful exploitation could lead to arbitrary code ex
nvd
CVE-2017-11233P3MEDIUMCVSS 6.5≥ 11.0.0, ≤ 11.0.202017-08-11
CVE-2017-11233 [MEDIUM] CWE-119 CVE-2017-11233: Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earl
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data related to block transfer of pixels. Successful exploitation could lead to arbitrary cod
nvd