CVE-2016-1117: Critical severity apple ios and macos vulnerability
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to bypass JavaScript API execution restrictions via unspecified vectors, a different vulnerability than CVE-2016-1038, CVE-2016-1039, CVE-2016-1040, CVE-2016-1041, CVE-2016-1042, CVE-2016-1044, and CVE-2016-1062.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1117?
CVE-2016-1117 is classified as a critical vulnerability due to its potential to allow attackers to bypass JavaScript API execution restrictions.
How do I fix CVE-2016-1117?
To fix CVE-2016-1117, update Adobe Reader and Acrobat to versions 11.0.16 or later, or ensure Acrobat and Acrobat Reader DC Classic and Continuous are updated to version 15.006.30172 or later.
What systems are affected by CVE-2016-1117?
CVE-2016-1117 affects Adobe Reader versions before 11.0.16 and Adobe Acrobat versions before 15.006.30172 across both Windows and macOS platforms.
What types of attacks can exploit CVE-2016-1117?
CVE-2016-1117 can be exploited by attackers leveraging unspecified vectors to bypass JavaScript execution restrictions in affected Adobe products.
Is there a workaround for CVE-2016-1117 until I can update?
There are no known workarounds for CVE-2016-1117, so the best course of action is to apply the necessary updates as soon as possible.