CVE-2016-4104: Buffer Overflow
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1037, CVE-2016-1063, CVE-2016-1064, CVE-2016-1071, CVE-2016-1072, CVE-2016-1073, CVE-2016-1074, CVE-2016-1076, CVE-2016-1077, CVE-2016-1078, CVE-2016-1080, CVE-2016-1081, CVE-2016-1082, CVE-2016-1083, CVE-2016-1084, CVE-2016-1085, CVE-2016-1086, CVE-2016-1088, CVE-2016-1093, CVE-2016-1095, CVE-2016-1116, CVE-2016-1118, CVE-2016-1119, CVE-2016-1120, CVE-2016-1123, CVE-2016-1124, CVE-2016-1125, CVE-2016-1126, CVE-2016-1127, CVE-2016-1128, CVE-2016-1129, CVE-2016-1130, CVE-2016-4088, CVE-2016-4089, CVE-2016-4090, CVE-2016-4093, CVE-2016-4094, CVE-2016-4096, CVE-2016-4097, CVE-2016-4098, CVE-2016-4099, CVE-2016-4100, CVE-2016-4101, CVE-2016-4103, and CVE-2016-4105.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4104?
CVE-2016-4104 has been classified with a critical severity level due to its potential to allow arbitrary code execution.
How do I fix CVE-2016-4104?
To fix CVE-2016-4104, update Adobe Reader and Acrobat to version 11.0.16 or later, or Acrobat DC to the specified updated versions.
What versions of Adobe software are affected by CVE-2016-4104?
CVE-2016-4104 affects Adobe Reader and Acrobat versions prior to 11.0.16 and certain versions of Acrobat and Acrobat Reader DC.
What types of attacks can CVE-2016-4104 facilitate?
CVE-2016-4104 can facilitate attacks that execute arbitrary code or cause a denial of service due to memory corruption.
Is there a workaround for CVE-2016-4104 if I can't update immediately?
A temporary workaround for CVE-2016-4104 is to restrict access to Adobe Reader and Acrobat until the software can be updated.