CVE-2017-3022: Low severity Adobe Acrobat vulnerability
Published Apr 12, 2017
·Updated
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when parsing the header of a JPEG 2000 file.
Affected Software
15 affected components
Adobe Acrobat<=11.0.19
Adobe Acrobat DC<=15.006.30280
Adobe Acrobat DC<=15.023.20070
Adobe Acrobat Reader DC<=15.006.30280
Adobe Acrobat Reader DC<=15.023.20070
Adobe Reader<=11.0.19
Apple iOS and macOS
Microsoft Windows
All of the following
Any of the following
Adobe Acrobat<=11.0.19
Adobe Acrobat DC<=15.006.30280
Adobe Acrobat DC<=15.023.20070
Adobe Acrobat Reader DC<=15.006.30280
Adobe Acrobat Reader DC<=15.023.20070
Adobe Reader<=11.0.19
Microsoft Windows
Event History
Apr 12, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Data Sourced
via NVD·02:59 PM
DescriptionSeverityWeaknessAffected Software
Jun 20, 58461
Event
04:53 PM
Frequently Asked Questions
1
What is the severity of CVE-2017-3022?
CVE-2017-3022 has been rated as having a medium severity level.
2
Which versions of Adobe Acrobat Reader are affected by CVE-2017-3022?
CVE-2017-3022 affects Adobe Acrobat Reader versions 11.0.19 and earlier and Adobe Acrobat DC versions 15.006.30280 and earlier and 15.023.20070 and earlier.
3
How do I fix CVE-2017-3022?
To mitigate CVE-2017-3022, update your Adobe Acrobat Reader or Acrobat DC to the latest available version.
4
What type of vulnerability is CVE-2017-3022?
CVE-2017-3022 is classified as a memory address leak vulnerability in Adobe Acrobat products.
5
What can be exploited in CVE-2017-3022?
CVE-2017-3022 can be exploited when the application parses the header of a JPEG 2000 file.