Adobe Reader vulnerabilities
360 known vulnerabilities affecting adobe/reader.
Total CVEs
360
CISA KEV
0
Public exploits
10
Exploited in wild
1
Severity breakdown
CRITICAL199HIGH123MEDIUM31LOW7
Vulnerabilities
Page 6 of 18
CVE-2017-3056HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3056 [HIGH] CWE-119 CVE-2017-3056: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JavaScript engine, related to string manipulation. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3049HIGHCVSS 7.8≤ 11.0.192017-04-12
CVE-2017-3049 [HIGH] CWE-119 CVE-2017-3049: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable heap overflow vulnerability in the image conversion engine, related to internal tile manipulation in TIFF files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3046MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3046 [MEDIUM] CWE-125 CVE-2017-3046: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser, related to contiguous code-stream parsing.
nvd
CVE-2017-3045MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3045 [MEDIUM] CWE-125 CVE-2017-3045: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser, related to the palette box.
nvd
CVE-2017-3043MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3043 [MEDIUM] CWE-200 CVE-2017-3043: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the collaboration functionality.
nvd
CVE-2017-3053MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3053 [MEDIUM] CWE-125 CVE-2017-3053: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the image conversion engine, related to parsing of the APP13 segment in JPEG files.
nvd
CVE-2017-3052MEDIUMCVSS 5.5≤ 11.0.192017-04-12
CVE-2017-3052 [MEDIUM] CWE-125 CVE-2017-3052: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the image conversion engine, related to parsing of EMF - enhanced meta file format.
nvd
CVE-2017-3032LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3032 [LOW] CWE-125 CVE-2017-3032: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 code-stream parser.
nvd
CVE-2017-3021LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3021 [LOW] CWE-125 CVE-2017-3021: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser engine.
nvd
CVE-2017-3020LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3020 [LOW] CWE-119 CVE-2017-3020: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the weblink module.
nvd
CVE-2017-3031LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3031 [LOW] CWE-125 CVE-2017-3031: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the XSLT engine.
nvd
CVE-2017-3022LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3022 [LOW] CWE-125 CVE-2017-3022: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when parsing the header of a JPEG 2000 file.
nvd
CVE-2017-3029LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3029 [LOW] CWE-119 CVE-2017-3029: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when handling a JPEG 2000 code-stream.
nvd
CVE-2017-3033LOWCVSS 3.3≤ 11.0.192017-04-12
CVE-2017-3033 [LOW] CWE-125 CVE-2017-3033: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when handling JPEG 2000 code-stream tile data.
nvd
CVE-2017-3010CRITICALCVSS 9.8≥ 11.0.0, ≤ 11.0.182017-03-31
CVE-2017-3010 [CRITICAL] CWE-119 CVE-2017-3010: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the rendering engine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-3009HIGHCVSS 7.5≥ 11.0.0, ≤ 11.0.182017-03-31
CVE-2017-3009 [HIGH] CWE-125 CVE-2017-3009: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow vulnerability in the JPEG2000 parser. Successful exploitation could lead to information disclosure.
nvd
CVE-2017-2972HIGHCVSS 7.8≤ 11.0.182017-01-24
CVE-2017-2972 [HIGH] CWE-119 CVE-2017-2972: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion module related to JPEG parsing. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2971HIGHCVSS 7.8≤ 11.0.182017-01-24
CVE-2017-2971 [HIGH] CWE-119 CVE-2017-2971: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the JPEG decoder routine. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2970HIGHCVSS 7.8≤ 11.0.182017-01-24
CVE-2017-2970 [HIGH] CWE-119 CVE-2017-2970: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the XSLT engine related to template manipulation. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2955HIGHCVSS 7.8≤ 11.0.182017-01-11
CVE-2017-2955 [HIGH] CWE-416 CVE-2017-2955: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable use after free vulnerability in the JavaScript engine. Successful exploitation could lead to arbitrary code execution.
nvd