CVE-2017-2962: Incorrect Type Cast
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable type confusion vulnerability in the XSLT engine related to localization functionality. Successful exploitation could lead to arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-2962?
CVE-2017-2962 is considered a critical vulnerability due to its potential to allow arbitrary code execution.
How do I fix CVE-2017-2962?
To fix CVE-2017-2962, update Adobe Acrobat Reader and Acrobat DC to the latest version as recommended by Adobe.
Which versions are affected by CVE-2017-2962?
CVE-2017-2962 affects Adobe Acrobat Reader versions 11.0.18 and earlier, and Acrobat DC versions 15.006.30244 and earlier, as well as 15.020.20042 and earlier.
What kind of attack could exploit CVE-2017-2962?
Exploitation of CVE-2017-2962 could lead to arbitrary code execution through a type confusion vulnerability in the XSLT engine.
Is there any workaround for CVE-2017-2962?
There are no recommended workarounds for CVE-2017-2962; applying the update is the best mitigation.