Impact
An out-of-bounds write error in Adobe Acrobat Reader enables attackers to execute arbitrary code in the context of the user that opens a crafted PDF. The flaw originates from improper bounds checking during file parsing and can lead to complete compromise of the victim’s system.
Affected Systems
Adobe publishes this flaw for its Acrobat 2024 series, Acrobat Reader, and general Adobe Acrobat products. No specific version numbers are listed, so all releases within these product lines are potentially affected.
Risk and Exploitability
The CVSS score of 7.8 marks the issue as high severity, and it is not part of the CISA KEV catalog. Because exploitation requires the victim to open a malicious file, the attack vector is user interaction, making the vulnerability a social‑engineering risk that is more likely to be triggered in environments with active file sharing or web browsing.
OpenCVE Enrichment