CVE-2019-8034: Use After Free
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .
Affected Software
Remediation
Event History
Frequently Asked Questions
What does an attacker need to exploit this vulnerability?
The attacker can exploit it remotely without privileges and with low attack complexity, but user interaction is required. Successful exploitation can result in arbitrary code execution.
Which Adobe products and releases are affected?
Adobe Acrobat DC and Adobe Acrobat Reader DC are affected. The listed affected releases are 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier.
Is a fix available?
Yes. A patch is available for this vulnerability.