Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have an use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution .
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/acrobat/apsb20-48.html | Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-20-991/ | Third Party Advisory VDB Entry |
https://blog.exodusintel.com/2021/04/20/analysis-of-a-use-after-free-vulnerability-in-adobe-acrobat-reader-dc/ | Exploit Patch Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
03 Feb 2023, 19:05
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://blog.exodusintel.com/2021/04/20/analysis-of-a-use-after-free-vulnerability-in-adobe-acrobat-reader-dc/ - Exploit, Patch, Third Party Advisory |
07 Dec 2022, 14:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
08 Sep 2021, 17:22
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* |
Information
Published : 2020-08-19 14:15
Updated : 2023-02-03 19:05
NVD link : CVE-2020-9715
Mitre link : CVE-2020-9715
JSON object : View
Products Affected
microsoft
- windows
adobe
- acrobat_reader_dc
- acrobat_dc
apple
- macos
CWE
CWE-416
Use After Free