CVE-2023-26397: [ZS-VR-22-112] Adobe Acrobat Out-of-bounds Read Memory leak
Adobe Acrobat Reader versions 23.001.20093 (and earlier) and 20.005.30441 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-26397?
CVE-2023-26397 is classified as a high-severity vulnerability that can lead to the disclosure of sensitive memory.
What versions of Adobe Acrobat Reader are affected by CVE-2023-26397?
CVE-2023-26397 affects Adobe Acrobat Reader versions 23.001.20093 and earlier, as well as 20.005.30441 and earlier.
How do I fix CVE-2023-26397?
To fix CVE-2023-26397, users should update Adobe Acrobat Reader to the latest version that addresses this vulnerability.
Can CVE-2023-26397 allow attackers to bypass mitigations?
Yes, CVE-2023-26397 can be exploited by attackers to bypass mitigations such as ASLR.
What types of systems are affected by CVE-2023-26397?
CVE-2023-26397 affects systems running vulnerable versions of Adobe Acrobat Reader on various platforms.