First published: Wed Jan 15 2014(Updated: )
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allows attackers to execute arbitrary code via unspecified vectors.
Credit: psirt@adobe.com psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | ||
All of | ||
Any of | ||
Adobe Acrobat Reader | >=10.0<10.1.9 | |
Adobe Acrobat Reader | >=11.0<11.0.6 | |
Any of | ||
macOS Yosemite | ||
Microsoft Windows | ||
Adobe Acrobat Reader | >=10.0<10.1.9 | |
Adobe Acrobat Reader | >=11.0<11.0.6 | |
macOS Yosemite | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0496 has a severity rating that allows attackers to execute arbitrary code in affected versions of Adobe Reader and Acrobat.
To fix CVE-2014-0496, users should update Adobe Reader and Acrobat to versions 10.1.9 or 11.0.6 or later.
CVE-2014-0496 affects Adobe Reader and Acrobat versions prior to 10.1.9 and 11.x before 11.0.6.
CVE-2014-0496 affects Adobe Reader and Acrobat on both Windows and Mac OS X platforms.
Yes, CVE-2014-0496 is categorized as a use-after-free vulnerability, which can be exploited to execute arbitrary code.