First published: Thu Jun 16 2011(Updated: )
Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2098.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader Notification Manager | =8.0 | |
Adobe Acrobat Reader Notification Manager | =8.1 | |
Adobe Acrobat Reader Notification Manager | =8.1.1 | |
Adobe Acrobat Reader Notification Manager | =8.1.2 | |
Adobe Acrobat Reader Notification Manager | =8.1.3 | |
Adobe Acrobat Reader Notification Manager | =8.1.4 | |
Adobe Acrobat Reader Notification Manager | =8.1.5 | |
Adobe Acrobat Reader Notification Manager | =8.1.6 | |
Adobe Acrobat Reader Notification Manager | =8.1.7 | |
Adobe Acrobat Reader Notification Manager | =8.2 | |
Adobe Acrobat Reader Notification Manager | =8.2.1 | |
Adobe Acrobat Reader Notification Manager | =8.2.2 | |
Adobe Acrobat Reader Notification Manager | =8.2.3 | |
Adobe Acrobat Reader Notification Manager | =8.2.4 | |
Adobe Acrobat Reader Notification Manager | =8.2.6 | |
Adobe Acrobat Reader Notification Manager | =9.0 | |
Adobe Acrobat Reader Notification Manager | =9.1 | |
Adobe Acrobat Reader Notification Manager | =9.1.1 | |
Adobe Acrobat Reader Notification Manager | =9.1.2 | |
Adobe Acrobat Reader Notification Manager | =9.1.3 | |
Adobe Acrobat Reader Notification Manager | =9.2 | |
Adobe Acrobat Reader Notification Manager | =9.3 | |
Adobe Acrobat Reader Notification Manager | =9.3.1 | |
Adobe Acrobat Reader Notification Manager | =9.3.2 | |
Adobe Acrobat Reader Notification Manager | =9.3.3 | |
Adobe Acrobat Reader Notification Manager | =9.3.4 | |
Adobe Acrobat Reader Notification Manager | =9.4 | |
Adobe Acrobat Reader Notification Manager | =9.4.1 | |
Adobe Acrobat Reader Notification Manager | =9.4.2 | |
Adobe Acrobat Reader Notification Manager | =9.4.3 | |
Adobe Acrobat Reader Notification Manager | =9.4.4 | |
Adobe Acrobat Reader Notification Manager | =10.0 | |
Adobe Acrobat Reader Notification Manager | =10.0.1 | |
Adobe Acrobat Reader Notification Manager | =10.0.2 | |
Adobe Acrobat Reader Notification Manager | =10.0.3 | |
Apple iOS and macOS | ||
Microsoft Windows | ||
Adobe Acrobat Reader | =8.0 | |
Adobe Acrobat Reader | =8.1 | |
Adobe Acrobat Reader | =8.1.1 | |
Adobe Acrobat Reader | =8.1.2 | |
Adobe Acrobat Reader | =8.1.3 | |
Adobe Acrobat Reader | =8.1.4 | |
Adobe Acrobat Reader | =8.1.5 | |
Adobe Acrobat Reader | =8.1.6 | |
Adobe Acrobat Reader | =8.1.7 | |
Adobe Acrobat Reader | =8.2 | |
Adobe Acrobat Reader | =8.2.1 | |
Adobe Acrobat Reader | =8.2.2 | |
Adobe Acrobat Reader | =8.2.3 | |
Adobe Acrobat Reader | =8.2.4 | |
Adobe Acrobat Reader | =8.2.5 | |
Adobe Acrobat Reader | =8.2.6 | |
Adobe Acrobat Reader | =9.0 | |
Adobe Acrobat Reader | =9.1 | |
Adobe Acrobat Reader | =9.1.1 | |
Adobe Acrobat Reader | =9.1.2 | |
Adobe Acrobat Reader | =9.1.3 | |
Adobe Acrobat Reader | =9.2 | |
Adobe Acrobat Reader | =9.3 | |
Adobe Acrobat Reader | =9.3.1 | |
Adobe Acrobat Reader | =9.3.2 | |
Adobe Acrobat Reader | =9.3.3 | |
Adobe Acrobat Reader | =9.3.4 | |
Adobe Acrobat Reader | =9.4 | |
Adobe Acrobat Reader | =9.4.1 | |
Adobe Acrobat Reader | =9.4.2 | |
Adobe Acrobat Reader | =9.4.3 | |
Adobe Acrobat Reader | =9.4.4 | |
Adobe Acrobat Reader | =10.0 | |
Adobe Acrobat Reader | =10.0.1 | |
Adobe Acrobat Reader | =10.0.2 | |
Adobe Acrobat Reader | =10.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2099 has a high severity rating due to its potential to allow arbitrary code execution and denial of service.
To fix CVE-2011-2099, update Adobe Reader and Acrobat to the latest versions as specified by Adobe's security bulletins.
CVE-2011-2099 affects Adobe Reader and Acrobat versions 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1.
Yes, CVE-2011-2099 can lead to memory corruption which may result in application crashes or exploitation.
While the best solution is to update software, disabling JavaScript in Adobe Reader and Acrobat may serve as a temporary workaround.