PT-2016-1028 · Adobe · Acrobat+3

Jaanus

·

Published

2016-01-07

·

Updated

2016-12-07

·

CVE-2016-0939

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Adobe Reader version not specified Adobe Acrobat version not specified Adobe Reader Document Cloud version not specified Adobe Acrobat Document Cloud version not specified
Description The issue is caused by a buffer overflow in Adobe PDF viewer and editor applications. This allows a remote attacker to execute arbitrary code or cause a denial of service, such as dereferencing an uninitialized pointer or memory corruption.
Recommendations For Adobe Reader, update to a version that contains a fix for this issue. For Adobe Acrobat, update to a version that contains a fix for this issue. For Adobe Reader Document Cloud, update to a version that contains a fix for this issue. For Adobe Acrobat Document Cloud, update to a version that contains a fix for this issue. As a temporary workaround, consider restricting access to PDF files from untrusted sources until a patch is available.

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-00094
CVE-2016-0939
ZDI-16-015

Affected Products

Acrobat
Acrobat Document Cloud
Reader
Reader Document Cloud