CVE-2017-3021: Low severity Adobe Acrobat vulnerability
Published Apr 12, 2017
·Updated
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser engine.
Affected Software
15 affected components
Adobe Acrobat<=11.0.19
Adobe Acrobat DC<=15.006.30280
Adobe Acrobat DC<=15.023.20070
Adobe Acrobat Reader DC<=15.006.30280
Adobe Acrobat Reader DC<=15.023.20070
Adobe Reader<=11.0.19
Apple iOS and macOS
Microsoft Windows
All of the following
Any of the following
Adobe Acrobat<=11.0.19
Adobe Acrobat DC<=15.006.30280
Adobe Acrobat DC<=15.023.20070
Adobe Acrobat Reader DC<=15.006.30280
Adobe Acrobat Reader DC<=15.023.20070
Adobe Reader<=11.0.19
Microsoft Windows
Event History
Apr 12, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Data Sourced
via NVD·02:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-3021?
CVE-2017-3021 has a medium severity rating due to the potential exploitation of the memory address leak vulnerability.
2
How do I fix CVE-2017-3021?
To fix CVE-2017-3021, update Adobe Acrobat Reader and Adobe Acrobat DC to the latest available versions.
3
What versions are affected by CVE-2017-3021?
CVE-2017-3021 affects Adobe Acrobat Reader versions 11.0.19 and earlier, as well as several versions of Adobe Acrobat DC up to 15.023.20070.
4
What is the impact of exploiting CVE-2017-3021?
Exploiting CVE-2017-3021 may lead to information disclosure through the leak of memory addresses.
5
Is CVE-2017-3021 specific to a certain operating system?
No, CVE-2017-3021 affects Adobe software on multiple operating systems, including Windows and macOS.