CVE-2018-4949: High severity adobe acrobat reader dc vulnerability
Published Jul 9, 2018
·Updated
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Affected Software
8 affected components
Adobe Acrobat DC>=15.006.30417<15.006.30418
Adobe Acrobat DC>=17.011.30079<17.011.30080
Adobe Acrobat DC>=18.011.20038<18.011.20040
Adobe Acrobat Reader DC>=15.006.30417<15.006.30418
Adobe Acrobat Reader DC>=17.011.30079<17.011.30080
Adobe Acrobat Reader DC>=18.011.20038<18.011.20040
Apple iOS and macOS
Microsoft Windows
Remediation
Event History
Jul 9, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-4949?
CVE-2018-4949 has a medium severity rating due to its potential for information disclosure.
2
How do I fix CVE-2018-4949?
To fix CVE-2018-4949, users should update Adobe Acrobat and Reader to the latest versions available.
3
What versions of Adobe Acrobat are affected by CVE-2018-4949?
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier are affected by CVE-2018-4949.
4
What type of vulnerability is CVE-2018-4949?
CVE-2018-4949 is classified as an out-of-bounds read vulnerability.
5
Can CVE-2018-4949 lead to exploitation?
Yes, successful exploitation of CVE-2018-4949 could lead to information disclosure.