CVE-2022-27788: Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Acrobat Reader DC versions 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-27788?
CVE-2022-27788 has a critical severity rating due to the potential for arbitrary code execution.
How do I fix CVE-2022-27788?
To fix CVE-2022-27788, update Adobe Acrobat Reader DC to the latest version that addresses this vulnerability.
What versions of Acrobat Reader are affected by CVE-2022-27788?
CVE-2022-27788 affects Acrobat Reader DC versions prior to 22.001.20085, 20.005.3031x, and 17.012.30205.
What types of attacks can exploit CVE-2022-27788?
CVE-2022-27788 can be exploited through specially crafted PDF documents that trigger the out-of-bounds write vulnerability.
Can CVE-2022-27788 affect my computer?
Yes, if you are using an affected version of Adobe Acrobat Reader or Acrobat DC, your computer may be vulnerable to exploitation.