First published: Wed Apr 12 2017(Updated: )
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when handling a JPEG 2000 code-stream.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | <=11.0.19 | |
Adobe Acrobat | <=15.006.30280 | |
Adobe Acrobat | <=15.023.20070 | |
Adobe Acrobat Reader | <=15.006.30280 | |
Adobe Acrobat Reader | <=15.023.20070 | |
Adobe Acrobat Reader | <=11.0.19 | |
Apple iOS and macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-3029 is rated as a critical vulnerability due to its potential to lead to memory address leaks in Adobe Acrobat products.
To fix CVE-2017-3029, you should upgrade to the latest version of Adobe Acrobat Reader or Acrobat DC that resolves this vulnerability.
Adobe Acrobat Reader versions 11.0.19 and earlier, as well as various versions of Acrobat DC up to 15.006.30280 and 15.023.20070 are affected by CVE-2017-3029.
CVE-2017-3029 can potentially lead to unauthorized information disclosure through memory address leaks.
There are no known effective workarounds for CVE-2017-3029, so updating to a patched version is the recommended solution.