CVE-2017-3051
HIGHAdobe Acrobat < 11.0.19 - Out-of-Bounds Read
Title source: ruleDescription
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to parsing of JPEG files. Successful exploitation could lead to arbitrary code execution.
References (4)
Scores
CVSS v3
7.8
EPSS
0.0238
EPSS Percentile
84.8%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-125
Status
draft
Affected Products (6)
adobe/acrobat
< 11.0.19
adobe/acrobat_dc
< 15.006.30280
adobe/acrobat_dc
< 15.023.20070
adobe/acrobat_reader_dc
< 15.006.30280
adobe/acrobat_reader_dc
< 15.023.20070
adobe/reader
< 11.0.19
Timeline
Published
Apr 12, 2017
Tracked Since
Feb 18, 2026