CVE-2025-54257: Acrobat Reader | Use After Free (CWE-416)
Acrobat Reader versions 24.001.30254, 20.005.30774, 25.001.20672 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file, and scope is unchanged.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54257?
CVE-2025-54257 has a critical severity rating due to the potential for arbitrary code execution.
How do I fix CVE-2025-54257?
To fix CVE-2025-54257, users should update Adobe Acrobat Reader to the latest version available from the official source.
Which versions are affected by CVE-2025-54257?
CVE-2025-54257 affects Adobe Acrobat Reader versions 24.001.30254, 20.005.30774, and 25.001.20672 or earlier.
What type of vulnerability is CVE-2025-54257?
CVE-2025-54257 is classified as a Use After Free vulnerability.
What are the requirements for exploiting CVE-2025-54257?
Exploitation of CVE-2025-54257 requires user interaction, meaning the victim must open a crafted file.