CVE-2018-4977: Use After Free
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-4977?
CVE-2018-4977 is classified as a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2018-4977?
To fix CVE-2018-4977, update Adobe Acrobat and Reader to versions 2018.011.20039 or later, 2017.011.30080 or later, or 2015.006.30418 or later.
What software is affected by CVE-2018-4977?
CVE-2018-4977 affects Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier.
What could an attacker achieve by exploiting CVE-2018-4977?
An attacker exploiting CVE-2018-4977 could execute arbitrary code in the context of the current user, potentially leading to a full compromise of the system.
Is there a workaround for CVE-2018-4977?
Currently, the best defense against CVE-2018-4977 is to apply the security updates provided by Adobe.