First published: Tue Dec 10 2024(Updated: )
Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Any of | ||
Adobe Acrobat Reader | >=20.001.30002<20.005.30748 | |
Adobe Acrobat Reader | >=24.001.30159<24.001.30225 | |
Adobe Acrobat | >=15.007.20033<24.005.20320 | |
Adobe Acrobat Reader | >=20.001.30002<20.005.30748 | |
Adobe Acrobat Reader | >=15.007.20033<24.005.20320 | |
Any of | ||
Apple iOS and macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-49531 has a moderate severity rating as it can lead to denial-of-service for affected Acrobat Reader versions.
To remediate CVE-2024-49531, update Adobe Acrobat Reader or Adobe Acrobat DC to the latest patched version.
CVE-2024-49531 affects Adobe Acrobat Reader versions 24.005.20307, 24.001.30213, 20.005.30730 and earlier.
CVE-2024-49531 is classified as a NULL Pointer Dereference vulnerability.
An attacker could exploit CVE-2024-49531 remotely to crash the application.