CVE-2019-7115

Description

Adobe Acrobat and Reader versions 2019.010.20098 and earlier, 2019.010.20098 and earlier, 2017.011.30127 and earlier version, and 2015.006.30482 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
2.399

Associated Vulnerability

VulnerabilityOS Platform
Update Adobe Acrobat Reader DC to version 2019.010.20099Windows
Update Adobe Acrobat DC (Classic Track) to version 2015.006.30493Windows
Update Adobe Acrobat Reader DC MUI to version 2019.010.20099Windows
Update Adobe Acrobat Reader DC MUI (Classic Track) to version 2015.006.30493Windows
Update Adobe Acrobat Reader DC MUI (Classic Track) to version 2017.011.30138Windows
Update Adobe Acrobat DC (Continuous Track) to version 2019.010.20099Windows
Update Adobe Acrobat 2017 MUI (Classic Track) to version 2017.011.30138Windows
Multiple vulnerabilities affected in Acrobat DC 19.010.20098Windows
Multiple Vulnerabilities are affected in Adobe Acrobat DC (Classic Track) 15.006.30482Windows
Multiple Vulnerabilities are affected in Adobe Acrobat DC (Classic Track) 17.011.30127Windows
Multiple Vulnerabilities are affected in Adobe Acrobat DC (Continuous Track) 19.010.20098Windows
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC 19.010.20098Windows
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC MUI (Classic Track) 15.006.30482Windows
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC MUI (Classic Track) 17.011.30127Windows
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC MUI 19.010.20098Windows
Multiple Vulnerabilities are affected in Adobe Acrobat DC for MAC 15.006.30482Mac
Multiple Vulnerabilities are affected in Adobe Acrobat DC for MAC 17.011.30127Mac
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC for MAC 19.010.20098Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-309476Adobe Acrobat Reader DC (Continuous Track) update - All languages (19.010.20099) (APSB19-17)
PATCH-309471Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages (15.006.30493) (APSB19-17)
PATCH-309477Adobe Acrobat Reader MUI DC (Continuous Track) update - All languages (19.010.20099) (APSB19-17)
PATCH-309472Adobe Acrobat Reader MUI DC (Classic Track) update - All languages (15.006.30493) (APSB19-17)
PATCH-326041Adobe Acrobat 2017 Pro and Standard (Acrobat 2017 Track) update - All languages (17.012.30262)
PATCH-309475Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages (19.010.20099) (APSB19-17)
PATCH-309473Adobe Acrobat 2017 Pro and Standard (Acrobat 2017 Track) update - All languages (17.011.30138) (APSB19-17)
PATCH-343119Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages (24.004.20272)
PATCH-315460Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-315460Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-337582Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages (24.002.20687)
PATCH-337583Adobe Acrobat Reader DC (24.002.20687)
PATCH-315465Adobe Acrobat Reader MUI DC (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-326044Adobe Acrobat Reader 2017 MUI (Classic Track) (17.012.30262)
PATCH-337585Adobe Acrobat Reader DC MUI (24.002.20687)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611989Adobe Acrobat Reader DC for MAC (25.001.20693)(Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234