#VU4112 Heap-based buffer overflow in Adobe Acrobat and Adobe Reader - CVE-2017-2942
Published: January 10, 2017
Adobe Acrobat
Adobe Reader
Adobe
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to boundary error when processing PDF files. A remote attacker can create a specially crafted PDF file, trick the victim into opening it, cause heap-based buffer overflow and execute arbitrary code on the target system with privileges of the current user.
Successful exploitation of the vulnerability will result in system compromise.
Remediation
- Acrobat DC Continuous 15.023.20053
- Acrobat Reader DC Continuous 15.023.20053
- Acrobat DC Classic 15.006.30279
- Acrobat Reader DC Classic 15.006.30279
- Acrobat XI 11.0.19
- Reader XI 11.0.19