CVE-2016-4092

CRITICAL

Adobe Reader/Acrobat <11.0.16, <15.006.30172, <15.016.20039 - Buffe...

Title source: llm

Description

Heap-based buffer overflow in Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4091.

Scores

CVSS v3 9.8
EPSS 0.0538
EPSS Percentile 90.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-119
Status draft

Affected Products (6)

adobe/acrobat < 11.0.15
adobe/acrobat_dc < 15.006.30121
adobe/acrobat_dc < 15.010.20060
adobe/acrobat_reader_dc < 15.006.30121
adobe/acrobat_reader_dc < 15.010.20060
adobe/reader < 11.0.15

Timeline

Published May 11, 2016
Tracked Since Feb 18, 2026