High severity7.8NVD Advisory· Published Jan 11, 2017· Updated May 6, 2026
CVE-2017-2949
CVE-2017-2949
Description
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable heap overflow vulnerability in the XSLT engine. Successful exploitation could lead to arbitrary code execution.
Affected products
7cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:classic:*:*:*+ 1 more
- cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:classic:*:*:*range: <=15.006.30244
- cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*range: <=15.020.20042
cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:classic:*:*:*+ 1 more
- cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:classic:*:*:*range: <=15.006.30244
- cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*range: <=15.020.20042
- Range: Adobe Acrobat Reader 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
19- helpx.adobe.com/security/products/acrobat/apsb17-01.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/95344nvd
- www.securitytracker.com/id/1037574nvd
- www.zerodayinitiative.com/advisories/ZDI-17-005nvd
- www.zerodayinitiative.com/advisories/ZDI-17-006nvd
- www.zerodayinitiative.com/advisories/ZDI-17-007nvd
- www.zerodayinitiative.com/advisories/ZDI-17-008nvd
- www.zerodayinitiative.com/advisories/ZDI-17-009nvd
- www.zerodayinitiative.com/advisories/ZDI-17-011nvd
- www.zerodayinitiative.com/advisories/ZDI-17-012nvd
- www.zerodayinitiative.com/advisories/ZDI-17-013nvd
- www.zerodayinitiative.com/advisories/ZDI-17-015nvd
- www.zerodayinitiative.com/advisories/ZDI-17-016nvd
- www.zerodayinitiative.com/advisories/ZDI-17-017nvd
- www.zerodayinitiative.com/advisories/ZDI-17-018nvd
- www.zerodayinitiative.com/advisories/ZDI-17-019nvd
- www.zerodayinitiative.com/advisories/ZDI-17-020nvd
- www.zerodayinitiative.com/advisories/ZDI-17-028nvd
- www.zerodayinitiative.com/advisories/ZDI-17-029nvd
News mentions
0No linked articles in our index yet.