header-logo
Suggest Exploit
vendor:
Acrobat Reader DC
by:
Sébastien Morin
9,8
CVSS
CRITICAL
Remote Code Execution
119
CWE
Product Name: Acrobat Reader DC
Affected Version From: 15.016.20045
Affected Version To: 15.016.20045
Patch Exists: YES
Related CWE: CVE-2016-4201
CPE: a:adobe:acrobat_reader_dc
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, OSX
2016

Adobe Acrobat Reader DC Vulnerability

The vulnerability allows a remote attacker to execute malicious code or access to part of dynamically allocated memory using a user interaction that opens a specially crafted PDF file containing an invalid font (.ttf ) including invalid data.

Mitigation:

Adobe fixed the issue (APSB16-26)
Source

Exploit-DB raw data: