High severity7.8NVD Advisory· Published Apr 12, 2017· Updated May 13, 2026
CVE-2017-3023
CVE-2017-3023
Description
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability in the JPEG 2000 code-stream tile functionality. Successful exploitation could lead to arbitrary code execution.
Affected products
6cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:classic:*:*:*+ 1 more
- cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:classic:*:*:*range: <=15.006.30280
- cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*range: <=15.023.20070
cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:classic:*:*:*+ 1 more
- cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:classic:*:*:*range: <=15.006.30280
- cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*range: <=15.023.20070
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.securityfocus.com/bid/97556nvdThird Party AdvisoryVDB Entry
- www.zerodayinitiative.com/advisories/ZDI-17-253/nvdThird Party AdvisoryVDB Entry
- helpx.adobe.com/security/products/acrobat/apsb17-11.htmlnvdVendor Advisory
- www.securitytracker.com/id/1038228nvd
News mentions
0No linked articles in our index yet.