CVE-2016-4096: Buffer Overflow
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1037, CVE-2016-1063, CVE-2016-1064, CVE-2016-1071, CVE-2016-1072, CVE-2016-1073, CVE-2016-1074, CVE-2016-1076, CVE-2016-1077, CVE-2016-1078, CVE-2016-1080, CVE-2016-1081, CVE-2016-1082, CVE-2016-1083, CVE-2016-1084, CVE-2016-1085, CVE-2016-1086, CVE-2016-1088, CVE-2016-1093, CVE-2016-1095, CVE-2016-1116, CVE-2016-1118, CVE-2016-1119, CVE-2016-1120, CVE-2016-1123, CVE-2016-1124, CVE-2016-1125, CVE-2016-1126, CVE-2016-1127, CVE-2016-1128, CVE-2016-1129, CVE-2016-1130, CVE-2016-4088, CVE-2016-4089, CVE-2016-4090, CVE-2016-4093, CVE-2016-4094, CVE-2016-4097, CVE-2016-4098, CVE-2016-4099, CVE-2016-4100, CVE-2016-4101, CVE-2016-4103, CVE-2016-4104, and CVE-2016-4105.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4096?
CVE-2016-4096 is classified as a critical vulnerability that can allow attackers to execute arbitrary code or cause denial of service.
How do I fix CVE-2016-4096?
To fix CVE-2016-4096, you should update Adobe Reader and Acrobat to version 11.0.16 or later for older versions and ensure Acrobat DC is updated to version 15.016.20039 or later.
Which versions of Adobe software are affected by CVE-2016-4096?
CVE-2016-4096 affects Adobe Reader and Acrobat versions before 11.0.16, Acrobat DC Classic before 15.006.30172, and Acrobat DC Continuous before 15.016.20039.
What types of attacks are possible due to CVE-2016-4096?
CVE-2016-4096 can enable attackers to perform arbitrary code execution and denial of service through memory corruption.
Is there a workaround for CVE-2016-4096?
There is no official workaround for CVE-2016-4096; updating to the latest version is recommended to mitigate the risk.