CVE-2022-34217: Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by an Out-Of-Bounds Write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34217?
CVE-2022-34217 is rated as critical due to its potential for arbitrary code execution.
How do I fix CVE-2022-34217?
To remediate CVE-2022-34217, update Adobe Acrobat Reader and Acrobat to the latest version available.
Which Adobe products are affected by CVE-2022-34217?
CVE-2022-34217 impacts Adobe Acrobat Reader DC versions 22.001.20142 and earlier, as well as Adobe Acrobat 20.005.30334 and earlier.
What are the potential consequences of exploiting CVE-2022-34217?
Exploitation of CVE-2022-34217 can lead to arbitrary code execution in the context of the current user.
How can I check if I'm using a vulnerable version affected by CVE-2022-34217?
You can verify your version of Adobe Acrobat or Reader against the specified vulnerable versions mentioned in CVE-2022-34217.