Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable heap overflow vulnerability in JPEG 2000 parsing of the fragment list tag. Successful exploitation could lead to arbitrary code execution.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/97549 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1038228 | |
http://www.zerodayinitiative.com/advisories/ZDI-17-280/ | Third Party Advisory VDB Entry |
https://helpx.adobe.com/security/products/acrobat/apsb17-11.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: adobe
Published: 2017-04-12T14:00:00
Updated: 2017-07-10T09:57:01
Reserved: 2016-12-02T00:00:00
Link: CVE-2017-3055
JSON object: View
NVD Information
Status : Modified
Published: 2017-04-12T14:59:02.953
Modified: 2017-07-11T01:33:35.317
Link: CVE-2017-3055
JSON object: View
Redhat Information
No data.
CWE