Out-of-bounds read in Adobe Reader and Adobe Acrobat - CVE-2022-34239
Published: July 13, 2022 / Updated: July 14, 2022
Vulnerability details
The vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to a boundary error when processing embedded fonts. A remote attacker can trick the victim to open a specially crafted PDF file, trigger an out-of-bounds read error and gain access to sensitive information.
Affected software
Adobe Acrobat
How to mitigate CVE-2022-34239
Adobe Acrobat - addressed in versions 17.012.30249, 20.005.30362, 22.001.20169