We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-24101

Adobe Acrobat Reader DC Annotation Use-After-Free Information Disclosure Vulnerability



Assigneradobe
Reserved2022-01-27
Published2022-05-11
Updated2024-09-16

Description

Acrobat Reader DC versions 20.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by a use-after-free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.



LOW: 3.3CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Product status

Any version
affected

Any version
affected

Any version
affected

Any version
affected

References

https://helpx.adobe.com/security/products/acrobat/apsb22-16.html

cve.org CVE-2022-24101

nvd.nist.gov CVE-2022-24101

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2022-24101
Support options

Helpdesk Telegram

Subscribe to our newsletter to learn more about our work.