Information disclosure in Adobe Reader and Adobe Acrobat - CVE-2019-7089
Published: February 12, 2019
Vulnerability details
The vulnerability allows a remote attacker to gain access to sensitive information and compromise the affected system.
The vulnerability exists due to data leak when processing PDF files. A remote attacker can create a specially crafted PDF document, trick the victim into opening it and gain access to sensitive information.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Affected software
Adobe Acrobat
How to mitigate CVE-2019-7089
Adobe Acrobat - addressed in versions 15.006.30475, 17.011.30120, 19.010.20091