CVE-2017-11268: Buffer Overflow
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) private JPEG data. Successful exploitation could lead to arbitrary code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-11268?
CVE-2017-11268 has been classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2017-11268?
To fix CVE-2017-11268, update your Adobe Acrobat Reader to the latest version available.
Which versions are affected by CVE-2017-11268?
CVE-2017-11268 affects Adobe Acrobat Reader versions prior to 2017.009.20058 and multiple versions of Adobe Acrobat DC and 11.0.20.
What types of attacks could exploit CVE-2017-11268?
CVE-2017-11268 could be exploited through malicious EMF files that trigger memory corruption.
Is there a workaround for CVE-2017-11268?
As of now, there are no known practical workarounds for CVE-2017-11268; updating Adobe products is the recommended action.