First published: Wed May 11 2016(Updated: )
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to obtain sensitive information from process memory via unspecified vectors, a different vulnerability than CVE-2016-1079.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | ||
Microsoft Windows | ||
Adobe Acrobat Reader | <=11.0.15 | |
Adobe Acrobat | <=15.006.30121 | |
Adobe Acrobat | <=15.010.20060 | |
Adobe Acrobat Reader | <=15.006.30121 | |
Adobe Acrobat Reader | <=15.010.20060 | |
Adobe Acrobat Reader | <=11.0.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1092 has been assigned a high severity rating due to its potential to expose sensitive information from process memory.
To fix CVE-2016-1092, users should update Adobe Reader and Acrobat to the latest available versions that address this vulnerability.
CVE-2016-1092 affects Adobe Reader and Acrobat versions prior to 11.0.16, as well as Acrobat and Reader DC Classic and Continuous versions before specified updates.
CVE-2016-1092 may potentially be exploited remotely to gain access to sensitive information stored in process memory.
CVE-2016-1092 allows attackers to obtain sensitive information from the memory of the affected application, which can include user data and credentials.