First published: Mon Jan 28 2019(Updated: )
Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. Note: A different vulnerability than CVE-2018-19723.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat | >=15.006.30060<=15.006.30448 | |
Adobe Acrobat | >=15.008.20082<=18.011.20058 | |
Adobe Acrobat | >=17.011.30059<=17.011.30099 | |
Adobe Acrobat Reader | >=15.006.30060<=15.006.30448 | |
Adobe Acrobat Reader | >=15.008.20082<=18.011.20058 | |
Adobe Acrobat Reader | >=17.011.30059<=17.011.30099 | |
Apple iOS and macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-19721 is classified as a moderate severity vulnerability due to its potential for information disclosure.
To fix CVE-2018-19721, update Adobe Acrobat and Reader to the latest patched versions.
Affected products include Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier.
Successful exploitation of CVE-2018-19721 could lead to sensitive information being disclosed to an attacker.
As of now, there are no specific public exploits documented for CVE-2018-19721.