First published: Fri Jan 18 2019(Updated: )
Adobe Acrobat and Reader versions 2019.010.20064 and earlier, 2019.010.20064 and earlier, 2017.011.30110 and earlier version, and 2015.006.30461 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Reader DC | >=15.006.30060<=15.006.30461 | |
Adobe Acrobat Reader DC | >=15.008.20082<=19.010.20064 | |
Adobe Acrobat Reader DC | >=17.011.30056<=17.011.30110 | |
Adobe Acrobat Reader | >=15.006.30060<=15.006.30461 | |
Adobe Acrobat Reader | >=15.008.20082<=19.010.20064 | |
Adobe Acrobat Reader | >=17.011.30059<=17.011.30110 | |
Apple iOS and macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-16011 is considered a critical vulnerability due to the potential for arbitrary code execution.
To fix CVE-2018-16011, update Adobe Acrobat and Reader to the latest versions that are not affected by this vulnerability.
CVE-2018-16011 affects Adobe Acrobat and Reader versions up to 2019.010.20064, 2017.011.30110, and 2015.006.30461.
CVE-2018-16011 can be exploited to execute arbitrary code on the affected systems, potentially allowing attackers to take control.
CVE-2018-16011 does not affect macOS Yosemite, as it is not listed as vulnerable.