CVE-2017-2954: Buffer Overflow
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion module when handling malformed TIFF images. Successful exploitation could lead to arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-2954?
CVE-2017-2954 is classified as a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2017-2954?
To fix CVE-2017-2954, update Adobe Acrobat Reader or Acrobat DC to the latest version as recommended by Adobe.
Which versions of Adobe Acrobat are affected by CVE-2017-2954?
CVE-2017-2954 affects Adobe Acrobat Reader versions up to 11.0.18 and Adobe Acrobat DC versions 15.020.20042 and earlier as well as 15.006.30244 and earlier.
What types of vulnerabilities does CVE-2017-2954 exploit?
CVE-2017-2954 exploits a memory corruption vulnerability when processing malformed TIFF images.
Can CVE-2017-2954 be exploited remotely?
Yes, CVE-2017-2954 can potentially be exploited remotely if a user opens a specially crafted TIFF file.