CVE-2017-3056: Buffer Overflow
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JavaScript engine, related to string manipulation. Successful exploitation could lead to arbitrary code execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Adobe Acrobat Readerto a version that resolves this vulnerability.Fixed in 11.0.19 - Upgrade
Upgrade
Adobe Acrobat Readerto a version that resolves this vulnerability.Fixed in 15.006.30280 - Upgrade
Upgrade
Adobe Acrobat Readerto a version that resolves this vulnerability.Fixed in 15.023.20070
Event History
Frequently Asked Questions
What is the severity of CVE-2017-3056?
CVE-2017-3056 is classified as a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2017-3056?
To mitigate CVE-2017-3056, users should update Adobe Acrobat Reader to the latest version available.
What software versions are affected by CVE-2017-3056?
CVE-2017-3056 affects Adobe Acrobat Reader versions 11.0.19 and earlier, and Adobe Acrobat DC versions 15.006.30280 and 15.023.20070 or earlier.
What type of vulnerability is CVE-2017-3056?
CVE-2017-3056 is a memory corruption vulnerability associated with the JavaScript engine in Adobe Acrobat products.
Can CVE-2017-3056 be exploited remotely?
Yes, CVE-2017-3056 can be exploited remotely, potentially allowing attackers to execute arbitrary code on the affected system.