PT-2016-3114 · Google+1 · Android+1

Jianqiang Zhao

·

Published

2016-11-10

·

Updated

2016-11-28

·

CVE-2016-3907

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions prior to 2016-11-05 Adobe Acrobat Document Cloud (affected versions not specified)
Description The issue involves an information disclosure vulnerability in Qualcomm components in Android and a buffer overflow vulnerability in Adobe Acrobat Document Cloud. The Android vulnerability could allow a local malicious application to access data outside of its permission levels, but it first requires compromising a privileged process. The Adobe Acrobat Document Cloud vulnerability is caused by a buffer overflow in memory and could allow a remote attacker to execute arbitrary code or cause a denial of service (memory corruption).
Recommendations For Android versions prior to 2016-11-05: Update to a version released after 2016-11-05 to resolve the issue. For Adobe Acrobat Document Cloud: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01276
CVE-2016-3907

Affected Products

Acrobat Document Cloud
Android