First published: Thu Oct 17 2019(Updated: )
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation could lead to arbitrary code execution .
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat | >=15.006.30060<15.006.30504 | |
Adobe Acrobat | >=15.008.20082<19.021.20047 | |
Adobe Acrobat | >=17.011.30059<17.011.30150 | |
Adobe Acrobat Reader | >=15.006.30060<15.006.30504 | |
Adobe Acrobat Reader | >=15.008.20082<19.021.20047 | |
Adobe Acrobat Reader | >=17.011.30059<17.011.30150 | |
Apple iOS and macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-8196 has been rated as critical due to the potential for arbitrary code execution.
To fix CVE-2019-8196, update Adobe Acrobat and Reader to the latest versions as recommended by Adobe.
Affected versions include Adobe Acrobat and Reader 2019.012.20040 and earlier, 2017.011.30148 and earlier, and 2015.006.30503 and earlier.
Yes, CVE-2019-8196 can be exploited remotely if the user opens a malicious PDF file.
CVE-2019-8196 is classified as an untrusted pointer dereference vulnerability.