First published: Mon Sep 11 2023(Updated: )
Adobe Acrobat Reader versions 2019.021.20056 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Dc | >=15.006.30060<=15.006.30505 | |
Adobe Acrobat Dc | >=15.008.20082<=19.021.20056 | |
Adobe Acrobat Dc | >=17.011.30059<=17.011.30152 | |
Adobe Acrobat Reader DC | >=15.006.30060<=15.006.30505 | |
Adobe Acrobat Reader DC | >=15.008.20082<=19.021.20056 | |
Adobe Acrobat Reader DC | >=17.011.30059<=17.011.30152 | |
Apple macOS | ||
Microsoft Windows | ||
Adobe Acrobat Dc | >=17.011.30059<=17.011.30155 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-16471 is a Use After Free vulnerability in Adobe Acrobat Reader versions 2019.021.20056 and earlier that can lead to arbitrary code execution.
The Use After Free vulnerability in CVE-2019-16471 occurs when a user interacts with a malicious file, allowing an attacker to execute arbitrary code in the context of the current user.
Adobe Acrobat Reader versions 2019.021.20056 and earlier are affected by CVE-2019-16471.
CVE-2019-16471 has a severity rating of 7.8 (high).
To fix CVE-2019-16471, it is recommended to update Adobe Acrobat Reader to the latest version available.