First published: Wed Aug 19 2020(Updated: )
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Acrobat Dc | >=15.006.30060<=15.006.30523 | |
Adobe Acrobat Dc | >=15.008.20082<=20.009.20074 | |
Adobe Acrobat Dc | >=17.011.30059<=17.011.30171 | |
Adobe Acrobat Dc | =20.001.30002 | |
Adobe Acrobat Reader DC | >=15.006.30060<=15.006.30523 | |
Adobe Acrobat Reader DC | >=15.008.20082<=20.009.20074 | |
Adobe Acrobat Reader DC | >=17.011.30059<=17.011.30171 | |
Adobe Acrobat Reader DC | =20.001.30002 | |
Apple macOS | ||
Microsoft Windows | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9710 is a vulnerability in Adobe Acrobat Pro DC that allows remote attackers to disclose sensitive information.
To exploit this vulnerability, the target must visit a malicious page or open a malicious file.
The affected software versions include Adobe Acrobat Pro DC versions 15.006.30060 to 15.006.30523, 15.008.20082 to 20.009.20074, and 17.011.30059 to 17.011.30171.
CVE-2020-9710 has a severity rating of 3.3 out of 10, which is considered medium.
Users should update to the latest version of Adobe Acrobat Pro DC to mitigate this vulnerability.