vendor:
Acrobat Reader DC
by:
Francis Provencher of COSIG
8,8
CVSS
HIGH
Memory Corruption
119
CWE
Product Name: Acrobat Reader DC
Affected Version From: 15.008.20082.15957
Affected Version To: 15.008.20082.15957
Patch Exists: YES
Related CWE: CVE-2015-7622
CPE: a:adobe:acrobat_reader_dc
Metasploit:
https://www.rapid7.com/db/vulnerabilities/adobe-reader-apsb15-24-CVE-2015-6685/, https://www.rapid7.com/db/vulnerabilities/adobe-reader-apsb15-24-CVE-2015-6686/, https://www.rapid7.com/db/vulnerabilities/adobe-reader-apsb15-24-CVE-2015-6693/, https://www.rapid7.com/db/vulnerabilities/adobe-reader-apsb15-24-CVE-2015-6694/, https://www.rapid7.com/db/vulnerabilities/adobe-reader-apsb15-24-CVE-2015-6695/, https://www.rapid7.com/db/vulnerabilities/adobe-reader-apsb15-24-CVE-2015-7622/, https://www.rapid7.com/db/vulnerabilities/adobe-reader-apsb15-24-CVE-2015-7650/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2015
Adobe Acrobat Reader DC Exploit
An error in the the PDF parser, could lead to a memory corruption when processing a crafted PDF with an invalid image. Successful exploitation of the vulnerabilities may allow execution of arbitrar y code.
Mitigation:
Adobe released a patch (APSB15-24) to address this vulnerability.