imPC@ndo EN

Tracker / CVE-2020-24435

CVE-2020-24435

Alta 7.8

Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a heap-based buffer overflow vulnerability in the submitForm function, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted .pdf file in Acrobat Reader.

Prodotti e versioni affette

adobe acrobat · … → 20.001.30005
adobe acrobat_dc · … → 17.011.30175
adobe acrobat_dc · … → 20.012.20048
adobe acrobat_reader · … → 20.001.30005
adobe acrobat_reader_dc · … → 17.011.30175
adobe acrobat_reader_dc · … → 20.012.20048

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti