Heap-based buffer overflow in AGM.dll in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to execute arbitrary code via a multiple-layer PDF document, a different vulnerability than CVE-2015-6696 and CVE-2015-6698.
References
Link | Resource |
---|---|
http://www.zerodayinitiative.com/advisories/ZDI-15-637 | Third Party Advisory VDB Entry |
https://helpx.adobe.com/security/products/acrobat/apsb15-24.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/79208 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2015-12-21 03:59
Updated : 2021-09-08 10:19
NVD link : CVE-2015-8458
Mitre link : CVE-2015-8458
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
microsoft
- windows
adobe
- acrobat
- acrobat_reader_dc
- acrobat_reader
- acrobat_dc
apple
- macos