CVE-2022-34236: Adobe Acrobat Reader DC Font Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34236?
CVE-2022-34236 is classified as a critical vulnerability due to its potential to disclose sensitive memory information.
What versions of Adobe Acrobat are affected by CVE-2022-34236?
CVE-2022-34236 affects Adobe Acrobat Reader versions 22.001.20142 and earlier, 20.005.30334 and earlier, and 17.012.30229 and earlier.
How do I fix CVE-2022-34236?
To fix CVE-2022-34236, update Adobe Acrobat Reader to the latest version available.
Can CVE-2022-34236 be exploited remotely?
Yes, CVE-2022-34236 can be exploited remotely by attackers to gain access to sensitive memory information.
What are the potential impacts of CVE-2022-34236?
The potential impacts of CVE-2022-34236 include unauthorized access to sensitive data and possible system compromise.