Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) for macOS are affected by a security feature bypass that could result in dynamic library code injection by the Adobe Reader process. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-17151 Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) for macOS are affected by a security feature bypass that could result in dynamic library code injection by the Adobe Reader process. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 16 Sep 2024 18:00:00 +0000

Type Values Removed Values Added
Title Acrobat Reader DC for macOS Dynamic Library Injection Vulnerability Acrobat Reader DC for macOS Dynamic Library Injection Vulnerability

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published:

Updated: 2024-09-16T17:43:53.414Z

Reserved: 2020-08-19T00:00:00

Link: CVE-2020-24431

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-11-05T20:15:16.270

Modified: 2024-11-21T05:14:48.673

Link: CVE-2020-24431

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses