CVE-2019-8049: Critical severity Adobe Acrobat DC vulnerability
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution .
Affected Software
Remediation
Event History
Frequently Asked Questions
Who can exploit this vulnerability?
An unauthenticated attacker can exploit it remotely; the CVSS vector indicates network attack access, low attack complexity, and no user interaction requirement.
What impact could successful exploitation have?
Successful exploitation could result in arbitrary code execution. The vulnerability is rated critical with high impacts to confidentiality, integrity, and availability.
Which releases are affected?
Affected releases include Adobe Acrobat and Reader 2019.012.20035 and earlier, 2017.011.30142 and 2017.011.30143 and earlier, and 2015.006.30497 and 2015.006.30498 and earlier.
Is a fix available?
Yes. A patch is available.