First published: Fri Jan 18 2019(Updated: )
Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat DC | >=15.006.30060<=15.006.30457 | |
Adobe Acrobat DC | >=15.008.20082<=19.008.20081 | |
Adobe Acrobat DC | >=17.011.30056<=17.011.30106 | |
Adobe Acrobat DC | >=15.006.30060<=15.006.30457 | |
Adobe Acrobat DC | >=15.008.20082<=19.008.20081 | |
Adobe Acrobat DC | >=17.011.30059<=17.011.30106 | |
Microsoft Windows | ||
Adobe Acrobat DC | >=15.006.30060<=15.006.30456 | |
Adobe Acrobat DC | >=15.008.20082<=19.008.20080 | |
Adobe Acrobat DC | >=17.011.30056<=17.011.30105 | |
Adobe Acrobat DC | >=15.006.30060<=15.006.30456 | |
Adobe Acrobat DC | >=15.008.20082<=19.008.20080 | |
Adobe Acrobat DC | >=17.011.30059<=17.011.30105 | |
macOS Yosemite |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-16034 has been classified as a critical severity vulnerability.
To fix CVE-2018-16034, users should update Adobe Acrobat and Reader to the latest versions released after the vulnerability was disclosed.
CVE-2018-16034 affects various versions of Adobe Acrobat and Adobe Reader, specifically older versions prior to the security updates.
Failing to address CVE-2018-16034 could allow an attacker to exploit the out-of-bounds read vulnerability, potentially leading to unauthorized information disclosure.
There are no known effective workarounds for CVE-2018-16034, so updating to a fixed version is essential.