First published: Fri Oct 12 2018(Updated: )
Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat | >=15.006.30060<=15.006.30452 | |
Adobe Acrobat | >=15.008.20082<=18.011.20063 | |
Adobe Acrobat | >=17.011.30059<=17.011.30102 | |
Adobe Acrobat Reader | >=15.006.30060<=15.006.30452 | |
Adobe Acrobat Reader | >=15.008.20082<=18.011.20063 | |
Adobe Acrobat Reader | >=17.011.30059<=17.011.30102 | |
Apple iOS and macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15948 has been rated as a critical vulnerability due to its potential for information disclosure.
To fix CVE-2018-15948, users should upgrade to the latest versions of Adobe Acrobat or Reader as specified in the security advisory.
Users of Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier are affected by CVE-2018-15948.
Successful exploitation of CVE-2018-15948 could lead to unauthorized information disclosure.
Yes, Adobe Acrobat Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier are vulnerable to CVE-2018-15948.