First published: Wed May 11 2016(Updated: )
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1037, CVE-2016-1063, CVE-2016-1064, CVE-2016-1071, CVE-2016-1072, CVE-2016-1073, CVE-2016-1074, CVE-2016-1077, CVE-2016-1078, CVE-2016-1080, CVE-2016-1081, CVE-2016-1082, CVE-2016-1083, CVE-2016-1084, CVE-2016-1085, CVE-2016-1086, CVE-2016-1088, CVE-2016-1093, CVE-2016-1095, CVE-2016-1116, CVE-2016-1118, CVE-2016-1119, CVE-2016-1120, CVE-2016-1123, CVE-2016-1124, CVE-2016-1125, CVE-2016-1126, CVE-2016-1127, CVE-2016-1128, CVE-2016-1129, CVE-2016-1130, CVE-2016-4088, CVE-2016-4089, CVE-2016-4090, CVE-2016-4093, CVE-2016-4094, CVE-2016-4096, CVE-2016-4097, CVE-2016-4098, CVE-2016-4099, CVE-2016-4100, CVE-2016-4101, CVE-2016-4103, CVE-2016-4104, and CVE-2016-4105.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | ||
Microsoft Windows Operating System | ||
Adobe Acrobat Reader | <=11.0.15 | |
Adobe Acrobat Reader DC | <=15.006.30121 | |
Adobe Acrobat Reader DC | <=15.010.20060 | |
Adobe Acrobat Reader | <=15.006.30121 | |
Adobe Acrobat Reader | <=15.010.20060 | |
Adobe Acrobat Reader | <=11.0.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1076 has been categorized as a critical vulnerability that allows for arbitrary code execution or denial of service.
To fix CVE-2016-1076, upgrade Adobe Acrobat and Adobe Reader to the latest versions available from Adobe.
Adobe Acrobat versions prior to 11.0.16 and Adobe Acrobat DC Classic and Continuous versions prior to 15.016.20039 are affected by CVE-2016-1076.
CVE-2016-1076 affects Adobe Reader and Acrobat on both Windows and macOS platforms.
Yes, CVE-2016-1076 can potentially allow attackers to execute arbitrary code, leading to full system compromise.