CVE-2020-3805: Use After Free
Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution .
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Adobe Acrobat and Readerto a version that resolves this vulnerability.Fixed in 2020.006.20034 - Upgrade
Upgrade
Adobe Acrobat and Readerto a version that resolves this vulnerability.Fixed in 2017.011.30158 - Upgrade
Upgrade
Adobe Acrobat and Readerto a version that resolves this vulnerability.Fixed in 2015.006.30510
Event History
Frequently Asked Questions
What is the severity of CVE-2020-3805?
CVE-2020-3805 has been classified as a critical severity vulnerability.
How do I fix CVE-2020-3805?
To fix CVE-2020-3805, users should update Adobe Acrobat and Reader to the latest versions provided by Adobe.
What is the impact of CVE-2020-3805?
The impact of CVE-2020-3805 can lead to arbitrary code execution, allowing attackers to gain control over affected systems.
Which Adobe products are affected by CVE-2020-3805?
Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, and 2015.006.30510 and earlier are affected by CVE-2020-3805.
Is CVE-2020-3805 a remote code execution vulnerability?
Yes, CVE-2020-3805 is a use-after-free vulnerability that can be exploited for remote code execution.