Adobe Reader dc agm Heap Buffer Overflow Vulnerability (CVE-2015-6696)
Adobe Reader dc agm Heap Buffer Overflow Vulnerability (CVE-2015-6696)
Release date:
Updated on:
Affected Systems:
Adobe Acrobat Reader
Description:
CVE (CAN) ID: CVE-2015-6696
Acrobat Reader DC can read, search, print, and interact with almost any type of PDF files.
Adobe Reader DC is installed with a security vulnerability in user interaction. in dll, a multi-layer PDF file can be reused after the hanging pointer is released. Attackers can exploit this vulnerability to execute arbitrary code in the current process.
<* Source: Jaanus Kp
Link: http://www.zerodayinitiative.com/advisories/ZDI-15-569/
Https://helpx.adobe.com/security/products/acrobat/apsb15-24.html
*>
Suggestion:
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (apsb15-24) and patches for this:
Apsb15-24: Security Updates Available for Adobe Acrobat and Reader
Link: https://helpx.adobe.com/security/products/acrobat/apsb15-24.html
This article permanently updates the link address: