CVE-2026-47959: Acrobat Reader | Stack-based Buffer Overflow (CWE-121)
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Adobe Acrobat Readerfrom your environment.If Acrobat Reader is not required, uninstall/remove it from systems until a vendor patch is available to eliminate exposure to the stack-based buffer overflow.
- Compensating control
Treat PDF files from untrusted or unexpected sources as potentially malicious. Do not open unsolicited PDFs and educate users that exploitation requires opening a malicious file.
- Compensating control
Block or filter PDF attachments and downloads at email and web gateways, and ensure endpoint defenses (AV/EDR) are up to date to detect and prevent delivery/execution of malicious PDF files.
- Operational
Apply any Adobe-supplied security updates for Acrobat Reader as soon as they are released.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47959?
The severity of CVE-2026-47959 is high, with a CVSS score of 7.8.
How do I fix CVE-2026-47959?
To fix CVE-2026-47959, users should update Adobe Acrobat Reader to the latest version.
What types of systems are affected by CVE-2026-47959?
CVE-2026-47959 affects Adobe Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier.
What is the impact of CVE-2026-47959?
CVE-2026-47959 can result in arbitrary code execution in the context of the current user if exploited.
How can CVE-2026-47959 be exploited?
CVE-2026-47959 can be exploited if the victim opens a malicious file specifically designed to trigger the buffer overflow.