Tracker / CVE-2024-39420
CVE-2024-39420
High 7.0
Acrobat Reader versions 20.005.30636, 24.002.21005, 24.001.30159, 20.005.30655, 24.002.20965, 24.002.20964, 24.001.30123, 24.003.20054 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could lead to arbitrary code execution. This vulnerability arises when the timing of actions changes the state of a resource between the checking of a condition and the use of the resource, allowing an attacker to manipulate the resource in a harmful way. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected products and versions
| adobe | acrobat · 20.001.30005 → 20.005.30655 |
|---|---|
| adobe | acrobat · 24.001.20604 → 24.001.30159 |
| adobe | acrobat_dc · 15.008.20082 → 24.002.21005 |
| adobe | acrobat_reader · 20.001.3005 → 20.005.30655 |
| adobe | acrobat_reader_dc · 15.008.20082 → 24.002.21005 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.