CVE-2025-43577: Acrobat Reader | Use After Free (CWE-416)
Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-43577?
CVE-2025-43577 is classified as a critical vulnerability due to the potential for arbitrary code execution by attackers.
How do I fix CVE-2025-43577?
To fix CVE-2025-43577, update Adobe Acrobat Reader to version 25.001.20522 or later.
What versions of Acrobat Reader are affected by CVE-2025-43577?
Versions 24.001.30235, 20.005.30763, and 25.001.20521 and earlier are affected by CVE-2025-43577.
What type of vulnerability is CVE-2025-43577?
CVE-2025-43577 is a Use After Free vulnerability.
Is user interaction required to exploit CVE-2025-43577?
Yes, exploitation of CVE-2025-43577 requires user interaction, as a victim must open a malicious file.