CVE-2017-3116: Buffer Overflow
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the MakeAccessible plugin when parsing TrueType font data. Successful exploitation could lead to arbitrary code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-3116?
The severity of CVE-2017-3116 is rated as critical due to its potential for arbitrary code execution.
How do I fix CVE-2017-3116?
To fix CVE-2017-3116, update Adobe Acrobat Reader and Acrobat DC to the latest version available from Adobe.
What are the affected versions in CVE-2017-3116?
CVE-2017-3116 affects Adobe Acrobat Reader versions prior to 11.0.21 and Acrobat DC versions prior to 15.006.30355.
Is macOS affected by CVE-2017-3116?
No, macOS is not listed as affected by CVE-2017-3116.
Can CVE-2017-3116 be exploited remotely?
Yes, CVE-2017-3116 can be exploited remotely through malicious TrueType font data.