First published: Wed May 11 2016(Updated: )
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1037, CVE-2016-1063, CVE-2016-1064, CVE-2016-1071, CVE-2016-1072, CVE-2016-1073, CVE-2016-1074, CVE-2016-1076, CVE-2016-1077, CVE-2016-1078, CVE-2016-1080, CVE-2016-1081, CVE-2016-1082, CVE-2016-1083, CVE-2016-1084, CVE-2016-1085, CVE-2016-1086, CVE-2016-1088, CVE-2016-1093, CVE-2016-1116, CVE-2016-1118, CVE-2016-1119, CVE-2016-1120, CVE-2016-1123, CVE-2016-1124, CVE-2016-1125, CVE-2016-1126, CVE-2016-1127, CVE-2016-1128, CVE-2016-1129, CVE-2016-1130, CVE-2016-4088, CVE-2016-4089, CVE-2016-4090, CVE-2016-4093, CVE-2016-4094, CVE-2016-4096, CVE-2016-4097, CVE-2016-4098, CVE-2016-4099, CVE-2016-4100, CVE-2016-4101, CVE-2016-4103, CVE-2016-4104, and CVE-2016-4105.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | ||
Microsoft Windows | ||
Adobe Acrobat Reader | <=11.0.15 | |
Adobe Acrobat DC | <=15.006.30121 | |
Adobe Acrobat DC | <=15.010.20060 | |
Adobe Acrobat DC | <=15.006.30121 | |
Adobe Acrobat DC | <=15.010.20060 | |
Adobe Acrobat Reader | <=11.0.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1095 has been rated with high severity due to its potential to allow arbitrary code execution.
To fix CVE-2016-1095, users should update Adobe Reader and Acrobat to versions that are newer than 11.0.16 or 15.006.30172 for DC Classic and 15.016.20039 for DC Continuous.
CVE-2016-1095 affects Adobe Reader and Acrobat versions prior to 11.0.16, and Acrobat DC Classic versions up to 15.006.30172 and DC Continuous versions up to 15.016.20039.
Yes, CVE-2016-1095 can lead to a denial of service due to memory corruption vulnerabilities that can be exploited.
While CVE-2016-1095 primarily affects Adobe Acrobat software, it does not directly target macOS or Windows operating systems.