Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Adobe Acrobat Reader DC (Classic Track) Multiple Vulnerabilities-apsb17-36 (Mac OS X)

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

10.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

6 years ago

Modified

Modified

4 years ago

Summary

This host is installed with Adobe Acrobat Reader DC (Classic Track) and is prone to multiple vulnerabilities.

Insight

Insight

Multiple flaws exist due to, - Two access of uninitialized point vulnerabilities that could result in remote could execution, - Six use after free vulnerabilities that could result in remote code execution. - Five buffer access with incorrect length value vulnerabilities that could result in remote code execution. - Six buffer over-read vulnerabilities that could result in remote code execution. - A buffer overflow vulnerability that could result in remote code execution. - A heap overflow vulnerability that could result in remote code execution. - Two improper validation of array index vulnerabilities that could result in remote code execution. - Multiple out-of-bounds read vulnerabilities that could result in remote code execution. - Four out-of-bounds write vulnerabilities that could result in remote code execution. - Two security bypass vulnerabilities that could result in drive-by-downloads. - A security bypass vulnerability that could result in information disclosure. - A security bypass vulnerability that could result in remote code execution. - A stack exhaustion vulnerability that could result in excessive resource consumption. - Three type confusion vulnerabilities that could result in remote code execution. - Six untrusted pointer dereference vulnerabilities that could result in remote code execution. - For more details, refer the reference links mentioned.

Affected Software

Affected Software

Adobe Acrobat Reader DC (Classic Track) 2015.006.30355 and earlier versions on Mac OS X.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Upgrade to Adobe Acrobat DC (Classic Track) version 2015.006.30392 or later.