PT-2020-1968 · Adobe · Acrobat+1

Published

2020-03-17

·

Updated

2021-09-08

·

CVE-2020-3802

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Acrobat versions prior to 2020.006.20034 Adobe Acrobat versions prior to 2017.011.30158 Adobe Acrobat versions prior to 2015.006.30510 Adobe Reader versions prior to 2020.006.20034 Adobe Reader versions prior to 2017.011.30158 Adobe Reader versions prior to 2015.006.30510
Description The issue is related to a use-after-free vulnerability in Adobe Acrobat and Reader. This vulnerability can be exploited by a remote attacker to execute arbitrary code.
Recommendations For Adobe Acrobat versions prior to 2020.006.20034, update to a version later than 2020.006.20034. For Adobe Acrobat versions prior to 2017.011.30158, update to a version later than 2017.011.30158. For Adobe Acrobat versions prior to 2015.006.30510, update to a version later than 2015.006.30510. For Adobe Reader versions prior to 2020.006.20034, update to a version later than 2020.006.20034. For Adobe Reader versions prior to 2017.011.30158, update to a version later than 2017.011.30158. For Adobe Reader versions prior to 2015.006.30510, update to a version later than 2015.006.30510.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-01266
CVE-2020-3802
ZDI-20-330

Affected Products

Acrobat
Reader