CVE-2019-8216: High severity Adobe Acrobat DC vulnerability
Published Oct 17, 2019
·Updated
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
Affected Software
8 affected components
Adobe Acrobat DC>=15.006.30060<15.006.30504
Adobe Acrobat DC>=15.008.20082<19.021.20047
Adobe Acrobat DC>=17.011.30059<17.011.30150
Adobe Acrobat Reader DC>=15.006.30060<15.006.30504
Adobe Acrobat Reader DC>=15.008.20082<19.021.20047
Adobe Acrobat Reader DC>=17.011.30059<17.011.30150
Apple macOS
Microsoft Windows
Remediation
Event History
Oct 17, 2019
CVE Published
via MITRE·08:26 PM
Data Sourced
via MITRE·08:26 PM
DescriptionWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The vulnerability is network-accessible and requires no privileges or user interaction, according to the CVSS vector. Successful exploitation can disclose information.
2
Which deployments should be prioritized for remediation?
Adobe Acrobat DC and Adobe Acrobat Reader DC installations at or below the listed affected release levels should be prioritized. A patch is available.