CVE-2018-4957: High severity adobe acrobat reader dc vulnerability
Published Jul 9, 2018
·Updated
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Affected Software
8 affected components
Adobe Acrobat DC>=15.006.30060<=15.006.30417
Adobe Acrobat DC>=15.008.20082<=18.011.20038
Adobe Acrobat DC>=17.011.30059<=17.011.30079
Adobe Acrobat Reader DC>=15.006.30060<=15.006.30417
Adobe Acrobat Reader DC>=15.008.20082<=18.011.20038
Adobe Acrobat Reader DC>=17.011.30059<=17.011.30079
Apple iOS and macOS
Microsoft Windows
Remediation
Event History
Jul 9, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-4957?
CVE-2018-4957 has a severity rating of important as it can lead to information disclosure.
2
How do I fix CVE-2018-4957?
To fix CVE-2018-4957, update Adobe Acrobat and Reader to the latest versions available.
3
What versions of Adobe Acrobat are affected by CVE-2018-4957?
CVE-2018-4957 affects Adobe Acrobat and Reader versions up to 2018.011.20038, 2017.011.30079, and 2015.006.30417.
4
What type of vulnerability is CVE-2018-4957?
CVE-2018-4957 is classified as an Out-of-bounds read vulnerability.
5
Can CVE-2018-4957 lead to remote exploitation?
CVE-2018-4957 has the potential for exploitation that may lead to information disclosure, but it does not inherently allow for remote execution.