An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, and 11.0.22 and earlier versions. This vulnerability is an instance of a type confusion vulnerability in the EMF processing module. The issue causes the program to access an object using an incompatible type, leading to an out of bounds memory access. Attackers can exploit the vulnerability by using the out of bounds access for unintended reads, writes, or frees -- potentially leading to code corruption, control-flow hijack, or information leak attack.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2017-12-09T06:00:00
Updated: 2024-08-05T20:27:03.354Z
Reserved: 2017-11-01T00:00:00
Link: CVE-2017-16406
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-12-09T06:29:02.553
Modified: 2024-11-21T03:16:25.433
Link: CVE-2017-16406
Redhat
No data.