CVE-2018-12840

Description

Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
17.949

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Acrobat DC 18.011.20058Windows
Multiple vulnerabilities affected in Acrobat Reader 17.011.30096Windows
Multiple vulnerabilities fixed in Adobe Acrobat Reader DC (Continuous Track) update - All languages 18.011.20063 (APSB18-34)Windows
Multiple vulnerabilities fixed in Adobe Acrobat Reader MUI DC (Continuous Track) update - All languages 18.011.20063 (APSB18-34)Windows
Multiple vulnerabilities fixed in Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages 2018.011.20063 (APSB18-34)Windows
Multiple vulnerabilities fixed in Adobe Acrobat Reader 2017 MUI (Classic Track) update - All languages 17.011.30102 (APSB18-34)Windows
Multiple vulnerabilities fixed in Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages 15.006.30452 (APSB18-34)Windows
Multiple vulnerabilities fixed in Adobe Acrobat Reader MUI DC (Classic Track) update - All languages 15.006.30452 (APSB18-34)Windows
Multiple Vulnerabilities are affected in Adobe Acrobat DC for MAC 15.006.30448Mac
Multiple Vulnerabilities are affected in Adobe Acrobat DC for MAC 17.011.30099Mac
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC for MAC 18.011.20055Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-343119Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages (24.004.20272)
PATCH-315465Adobe Acrobat Reader MUI DC (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-308097Adobe Acrobat Reader DC (Continuous Track) update - All languages 18.011.20063 (APSB18-34)
PATCH-308098Adobe Acrobat Reader MUI DC (Continuous Track) update - All languages 18.011.20063 (APSB18-34)
PATCH-308096Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages 2018.011.20063 (APSB18-34)
PATCH-308099Adobe Acrobat Reader 2017 MUI (Classic Track) update - All languages 17.011.30102 (APSB18-34)
PATCH-308100Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages 15.006.30452 (APSB18-34)
PATCH-308101Adobe Acrobat Reader MUI DC (Classic Track) update - All languages 15.006.30452 (APSB18-34)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611989Adobe Acrobat Reader DC for MAC (25.001.20693)(Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234