CVE-2022-34226: Adobe Acrobat Reader DC PDF Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34226?
CVE-2022-34226 is classified as a critical vulnerability due to its potential to allow an attacker to read past the allocated memory.
How do I fix CVE-2022-34226?
To fix CVE-2022-34226, users should upgrade to the latest version of Adobe Acrobat Reader or Acrobat that is not affected by this vulnerability.
Which versions of Adobe Acrobat are affected by CVE-2022-34226?
Versions prior to 22.001.20142 of Adobe Acrobat and Acrobat Reader are affected by CVE-2022-34226.
What systems are impacted by CVE-2022-34226?
CVE-2022-34226 impacts Adobe Acrobat DC and Adobe Acrobat Reader DC, specifically certain versions for both.
Could CVE-2022-34226 lead to data breaches?
Yes, CVE-2022-34226 could potentially allow attackers to exploit the vulnerability for sensitive information exposure.