CVE-2017-11257: Incorrect Type Cast
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable type confusion vulnerability in the XFA layout engine. Successful exploitation could lead to arbitrary code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-11257?
CVE-2017-11257 has a high severity rating as it allows for arbitrary code execution through a type confusion vulnerability.
How do I fix CVE-2017-11257?
To fix CVE-2017-11257, users should update their Adobe Acrobat Reader or Adobe Acrobat DC to the latest versions available.
What versions of Adobe Acrobat are affected by CVE-2017-11257?
CVE-2017-11257 affects Adobe Acrobat Reader versions 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier.
Can CVE-2017-11257 be exploited remotely?
Yes, CVE-2017-11257 can be exploited remotely, allowing attackers to execute arbitrary code on the victim's system.
Is there a workaround for CVE-2017-11257?
There are no specific workarounds for CVE-2017-11257; updating to a secure version is the recommended action.