CVE-2018-12799

Description

Adobe Acrobat and Reader versions 2018.011.20055 and earlier, 2017.011.30096 and earlier, and 2015.006.30434 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation could lead to arbitrary code execution.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
3.227

Associated Vulnerability

VulnerabilityOS Platform
Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30068)Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30070)Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30078) - APSB18-02Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30079)Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30080 (APSB18-09)Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30096 (APSB18-21)Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30099 (APSB18-29)Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30102 (APSB18-34)Windows
Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30105 (APSB18-30)Windows
Upgrade Adobe Digital Editions 4.5.8 to latest versionWindows
Adobe Acrobat Reader 2017 MUI (Classic Track) update - All languages 17.011.30099 (APSB18-29)Windows
Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages 15.006.30448 (APSB18-29)Windows
Vulnerabilities CVE-2018-12799,CVE-2018-12808 are affected in Acrobat DC 18.011.20055Windows
Multiple vulnerabilities affected in Acrobat Reader 17.011.30096Windows
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC for MAC 18.011.20055Mac
Vulnerabilities CVE-2018-12799,CVE-2018-12808 are affected in Adobe Acrobat DC for MAC 15.006.30434Mac
Vulnerabilities CVE-2018-12799,CVE-2018-12808 are affected in Adobe Acrobat DC for MAC 17.011.30096Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-306922Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30068)
PATCH-306953Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30070)
PATCH-307125Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30078) - APSB18-02
PATCH-307182Adobe Acrobat 2017 MUI (Classic Track) update - All languages (17.011.30079)
PATCH-307527Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30080 (APSB18-09)
PATCH-307785Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30096 (APSB18-21)
PATCH-307931Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30099 (APSB18-29)
PATCH-308102Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30102 (APSB18-34)
PATCH-308169Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30105 (APSB18-30)
PATCH-307934Adobe Acrobat Reader 2017 MUI (Classic Track) update - All languages 17.011.30099 (APSB18-29)
PATCH-307936Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages 15.006.30448 (APSB18-29)
PATCH-343119Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages (24.004.20272)
PATCH-315465Adobe Acrobat Reader MUI DC (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-611989Adobe Acrobat Reader DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234