CVE-2021-39852: Adobe Acrobat Reader DC Null Pointer Dereference Could Lead To Application Denial-of-Service
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a Null pointer dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-39852?
CVE-2021-39852 is a vulnerability in Adobe Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier), and 2017.011.30199 (and earlier) that allows an attacker to achieve application denial-of-service.
How does CVE-2021-39852 affect Adobe Acrobat and Adobe Acrobat Reader?
CVE-2021-39852 affects Adobe Acrobat and Adobe Acrobat Reader versions as mentioned in the vulnerability.
How severe is CVE-2021-39852?
CVE-2021-39852 has a severity rating of 5.5 (medium).
How can an attacker leverage CVE-2021-39852?
An unauthenticated attacker could leverage CVE-2021-39852 to achieve application denial-of-service.
Where can I find more information about CVE-2021-39852?
You can find more information about CVE-2021-39852 at the following link: [Adobe Security Bulletin](https://helpx.adobe.com/security/products/acrobat/apsb21-55.html).