CVE-2017-3117
HIGHAdobe Acrobat < 11.0.21 - Memory Corruption
Title source: ruleDescription
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable heap overflow vulnerability in the plugin that handles links within the PDF. Successful exploitation could lead to arbitrary code execution.
Scores
CVSS v3
8.8
EPSS
0.2915
EPSS Percentile
96.5%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-119
Status
draft
Affected Products (6)
adobe/acrobat
< 11.0.21
adobe/acrobat_dc
< 15.006.30355
adobe/acrobat_dc
< 17.012.20098
adobe/acrobat_reader_dc
< 15.006.30355
adobe/acrobat_reader_dc
< 17.012.20098
adobe/reader
< 11.0.21
Timeline
Published
Aug 11, 2017
Tracked Since
Feb 18, 2026