CVE-2018-19722

Description

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
2.399

Associated Vulnerability

VulnerabilityOS Platform
Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30105 (APSB18-30)Windows
Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages 19.008.20071 (APSB18-30)Windows
Adobe Acrobat Reader DC (Continuous Track) update - All languages 19.008.20071 (APSB18-30)Windows
Adobe Acrobat Reader 2017 MUI (Classic Track) update - All languages 17.011.30105 (APSB18-30)Windows
Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages 15.006.30456 (APSB18-30)Windows
Multiple vulnerabilities affected in Acrobat DC 18.011.20063Windows
Multiple vulnerabilities affected in Acrobat Reader 17.011.30102Windows
Multiple Vulnerabilities are affected in Adobe Acrobat DC for MAC 15.006.30452Mac
Multiple Vulnerabilities are affected in Adobe Acrobat DC for MAC 17.011.30102Mac
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC for MAC 18.011.20063Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-308169Adobe Acrobat 2017 MUI (Classic Track) update - All languages 17.011.30105 (APSB18-30)
PATCH-308166Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages 19.008.20071 (APSB18-30)
PATCH-308167Adobe Acrobat Reader DC (Continuous Track) update - All languages 19.008.20071 (APSB18-30)
PATCH-308170Adobe Acrobat Reader 2017 MUI (Classic Track) update - All languages 17.011.30105 (APSB18-30)
PATCH-308172Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages 15.006.30456 (APSB18-30)
PATCH-343119Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages (24.004.20272)
PATCH-315465Adobe Acrobat Reader MUI DC (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611989Adobe Acrobat Reader DC for MAC (25.001.20693)(Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234