Adobe Reader DC Remote Code Execution Vulnerability (CVE-2016-1009) (apsb16-09)
Adobe Reader DC Remote Code Execution Vulnerability (CVE-2016-1009) (apsb16-09)
Release date:
Updated on:
Affected Systems:
Adobe Reader DC <= 15.010.20059
Adobe Reader DC <= 15.006.30119
Adobe Reader DC
Description:
CVE (CAN) ID: CVE-2016-1009
Adobe Reader is a PDF document reading software. Acrobat is a PDF document editing software.
Adobe Reader DC does not ensure that the index is within the allocated buffer when processing PDF documents. Attackers can exploit this vulnerability to execute arbitrary code in the context of the current process.
<* Source: AbdulAziz harsiri
Jaanus Kp
Link: https://helpx.adobe.com/security/products/acrobat/apsb16-09.html
*>
Suggestion:
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (apsb16-09) and patches for this:
Apsb16-09: Security Updates Available for Adobe Acrobat and Reader
Link: https://helpx.adobe.com/security/products/acrobat/apsb16-09.html
This article permanently updates the link address: