First published: Wed Jul 13 2016(Updated: )
Use-after-free vulnerability in Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | ||
Microsoft Windows | ||
Adobe Acrobat Reader | <=11.0.16 | |
Adobe Acrobat | <=15.006.30174 | |
Adobe Acrobat | <=15.016.20045 | |
Adobe Acrobat Reader | <=15.006.30174 | |
Adobe Acrobat Reader | <=15.016.20045 | |
Adobe Acrobat Reader | <=11.0.16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4255 is rated as critical due to its potential to allow attackers to execute arbitrary code.
To fix CVE-2016-4255, update Adobe Acrobat and Adobe Reader to the latest versions available.
CVE-2016-4255 affects Adobe Reader and Acrobat versions prior to 11.0.17 and Acrobat DC Classic versions prior to 15.006.30198.
CVE-2016-4255 exploits a use-after-free vulnerability, allowing attackers to manipulate how memory is accessed.
CVE-2016-4255 affects both Windows and OS X platforms.