First published: Wed Jul 13 2016(Updated: )
Heap-based buffer overflow in Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | ||
Microsoft Windows Operating System | ||
Adobe Acrobat Reader | <=11.0.16 | |
Adobe Acrobat Reader DC | <=15.006.30174 | |
Adobe Acrobat Reader DC | <=15.016.20045 | |
Adobe Acrobat Reader | <=15.006.30174 | |
Adobe Acrobat Reader | <=15.016.20045 | |
Adobe Acrobat Reader | <=11.0.16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4209 is classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2016-4209, update Adobe Reader and Acrobat to the latest version provided by Adobe.
CVE-2016-4209 affects Adobe Reader and Acrobat versions prior to 11.0.17 and various versions of Acrobat DC.
Yes, CVE-2016-4209 can be exploited remotely, allowing attackers to execute arbitrary code on the affected system.
CVE-2016-4209 affects Adobe products on Windows and macOS, but not the operating systems themselves.