EN

Tracker / CVE-2024-39420

CVE-2024-39420

Alta 7.0

Acrobat Reader versions 20.005.30636, 24.002.21005, 24.001.30159, 20.005.30655, 24.002.20965, 24.002.20964, 24.001.30123, 24.003.20054 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could lead to arbitrary code execution. This vulnerability arises when the timing of actions changes the state of a resource between the checking of a condition and the use of the resource, allowing an attacker to manipulate the resource in a harmful way. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Prodotti e versioni affette

adobe acrobat · 20.001.30005 → 20.005.30655
adobe acrobat · 24.001.20604 → 24.001.30159
adobe acrobat_dc · 15.008.20082 → 24.002.21005
adobe acrobat_reader · 20.001.3005 → 20.005.30655
adobe acrobat_reader_dc · 15.008.20082 → 24.002.21005

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti