CVE-2021-39842: Adobe Acrobat Reader DC messageHandler.OnMessage Use-After-Free Vulnerability
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-39842?
CVE-2021-39842 has been rated as critical due to its potential for arbitrary code execution.
How do I fix CVE-2021-39842?
To mitigate CVE-2021-39842, update Adobe Acrobat Reader DC to the latest version.
Which versions are affected by CVE-2021-39842?
CVE-2021-39842 affects Adobe Acrobat Reader DC versions 2021.005.20060 and earlier, 2020.004.30006 and earlier, and 2017.011.30199 and earlier.
Can CVE-2021-39842 be exploited remotely?
Yes, CVE-2021-39842 can potentially be exploited remotely if a user opens a malicious PDF file.
What are the potential consequences of CVE-2021-39842 exploitation?
Exploitation of CVE-2021-39842 could lead to arbitrary code execution, allowing an attacker to gain control over the affected system.