PT-2019-5979 · Adobe · Acrobat+1

Published

2019-05-14

·

Updated

2019-08-21

·

CVE-2019-7797

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Acrobat versions prior to 2019.010.20100 Adobe Acrobat versions prior to 2019.010.20099 Adobe Acrobat versions prior to 2017.011.30140 Adobe Acrobat versions prior to 2017.011.30138 Adobe Acrobat versions prior to 2015.006.30495 Adobe Acrobat versions prior to 2015.006.30493 Adobe Acrobat Reader versions prior to 2019.010.20100 Adobe Acrobat Reader versions prior to 2019.010.20099 Adobe Acrobat Reader versions prior to 2017.011.30140 Adobe Acrobat Reader versions prior to 2017.011.30138 Adobe Acrobat Reader versions prior to 2015.006.30495 Adobe Acrobat Reader versions prior to 2015.006.30493
Description The issue is related to a use-after-free vulnerability, which can be exploited by a remote attacker to execute arbitrary code. This vulnerability is associated with the use of memory after it has been freed.
Recommendations For Adobe Acrobat and Reader versions prior to 2019.010.20100, update to a version later than 2019.010.20100. For Adobe Acrobat and Reader versions prior to 2019.010.20099, update to a version later than 2019.010.20099. For Adobe Acrobat and Reader versions prior to 2017.011.30140, update to a version later than 2017.011.30140. For Adobe Acrobat and Reader versions prior to 2017.011.30138, update to a version later than 2017.011.30138. For Adobe Acrobat and Reader versions prior to 2015.006.30495, update to a version later than 2015.006.30495. For Adobe Acrobat and Reader versions prior to 2015.006.30493, update to a version later than 2015.006.30493.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-04059
CVE-2019-7797
ZDI-19-490

Affected Products

Acrobat
Acrobat Reader