First published: Tue Aug 08 2017(Updated: )
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the image conversion engine when processing Enhanced Metafile Format (EMF) data drawing position definition. Successful exploitation could lead to arbitrary code execution.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader | >=11.0.0<11.0.21 | |
Adobe Acrobat Reader DC | >=15.000.0000<15.006.30355 | |
Adobe Acrobat Reader DC | >=17.000.0000<=17.011.30066 | |
Adobe Acrobat Reader DC | >=17.000.0000<17.012.20098 | |
Adobe Acrobat Reader | >=15.000.0000<15.006.30355 | |
Adobe Acrobat Reader | >=17.000.0000<17.011.30066 | |
Adobe Acrobat Reader | >=17.000.0000<17.012.20098 | |
Adobe Acrobat Reader | >=11.0.0<11.0.21 | |
Apple iOS and macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-3123 is classified as a critical vulnerability due to its potential for exploitation causing memory corruption.
To fix CVE-2017-3123, users should upgrade to the latest version of Adobe Acrobat or Acrobat Reader available from Adobe.
CVE-2017-3123 affects multiple versions of Adobe Acrobat Reader, Adobe Acrobat DC, and older versions of Adobe applications.
CVE-2017-3123 is a memory corruption vulnerability related to the image conversion engine when processing EMF data.
There have been reports suggesting that CVE-2017-3123 is being actively exploited in the wild.