CVE-2017-11267: Buffer Overflow
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private data interpreted as JPEG data. Successful exploitation could lead to arbitrary code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-11267?
CVE-2017-11267 has a high severity rating due to its potential for exploitation via memory corruption in Adobe Acrobat products.
How do I fix CVE-2017-11267?
To fix CVE-2017-11267, update Adobe Acrobat Reader or Adobe Acrobat DC to the latest version that addresses this vulnerability.
What software does CVE-2017-11267 affect?
CVE-2017-11267 affects various versions of Adobe Acrobat Reader and Adobe Acrobat DC, specifically those prior to certain versions listed.
Can CVE-2017-11267 be exploited without user interaction?
CVE-2017-11267 can potentially be exploited without user interaction through specially crafted EMF files that are processed by the software.
What types of systems are at risk from CVE-2017-11267?
CVE-2017-11267 poses a risk to users on systems running affected versions of Adobe Acrobat on supported Windows and macOS platforms.