We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-24104

Adobe Acrobat Reader DC Annotation Use-After-Free Remote Code Execution Vulnerability



Assigneradobe
Reserved2022-01-27
Published2022-05-11
Updated2024-09-17

Description

Acrobat Reader DC versions 20.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.



HIGH: 7.8CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Product status

Any version
affected

Any version
affected

Any version
affected

Any version
affected

References

https://helpx.adobe.com/security/products/acrobat/apsb22-16.html

cve.org CVE-2022-24104

nvd.nist.gov CVE-2022-24104

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2022-24104
Support options

Helpdesk Telegram

Subscribe to our newsletter to learn more about our work.