First published: Wed Jul 15 2015(Updated: )
Heap-based buffer overflow in Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5096 and CVE-2015-5098.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | >=10.0<=10.1.14 | |
Adobe Acrobat Reader | >=11.0.0<=11.0.11 | |
Adobe Acrobat Reader DC | >=15.006.30033<15.006.30060 | |
Adobe Acrobat Reader DC | >=15.007.20033<15.008.20082 | |
Adobe Acrobat Reader Notification Manager | >=10.0<=10.1.14 | |
Adobe Acrobat Reader Notification Manager | >=11.0.0<=11.0.11 | |
Adobe Acrobat Reader | >=15.006.30033<15.006.30060 | |
Adobe Acrobat Reader | >=15.007.20033<15.008.20082 | |
macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5105 is considered critical due to the potential for attackers to execute arbitrary code.
To fix CVE-2015-5105, update Adobe Acrobat and Reader to the latest version as recommended by Adobe.
CVE-2015-5105 affects Adobe Acrobat versions 10.x before 10.1.15 and 11.x before 11.0.12, among others.
Yes, Adobe Acrobat Reader versions 10.x before 10.1.15 and 11.x before 11.0.12 are affected by CVE-2015-5105.
CVE-2015-5105 affects Adobe Acrobat and Reader on Windows and OS X platforms.