Adobe Acrobat and Reader CVE-2018-16011 Arbitrary Code Execution Vulnerability
BID:106447
CVE-2018-16011 |Info
Adobe Acrobat and Reader CVE-2018-16011 Arbitrary Code Execution Vulnerability
| Bugtraq ID: | 106447 |
| Class: | Input Validation Error |
| CVE: |
CVE-2018-16011 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 03 2019 12:00AM |
| Updated: | Jan 03 2019 12:00AM |
| Credit: | Sebastian Apelt (@bitshifter123) via Trend Micro's Zero Day Initiative |
| Vulnerable: |
Adobe Acrobat Reader DC 2019.10.20064 Adobe Acrobat Reader DC 2017.11.30110 Adobe Acrobat Reader DC 2015.8.20082 Adobe Acrobat Reader DC 2015.6.30461 Adobe Acrobat Reader DC 2015.6.30457 Adobe Acrobat Reader DC 2015.6.30452 Adobe Acrobat Reader DC 2015.6.30448 Adobe Acrobat Reader DC 2015.6.30434 Adobe Acrobat Reader DC 2015.6.30418 Adobe Acrobat Reader DC 2015.6.30417 Adobe Acrobat Reader DC 2015.6.30416 Adobe Acrobat Reader DC 2015.6.30413 Adobe Acrobat Reader DC 2015.6.30394 Adobe Acrobat Reader DC 2015.6.30392 Adobe Acrobat Reader DC 2015.6.30355 Adobe Acrobat Reader DC 2015.6.30352 Adobe Acrobat Reader DC 2015.6.30306 Adobe Acrobat Reader DC 2015.6.30060 Adobe Acrobat Reader DC 2015.009.20069 Adobe Acrobat Reader DC 2015.007.20033 Adobe Acrobat Reader DC 2015.006.30456 Adobe Acrobat Reader DC 2015.006.30094 Adobe Acrobat Reader DC 2015.006.30033 Adobe Acrobat Reader 2017.11.30106 Adobe Acrobat Reader 2017.11.30105 Adobe Acrobat Reader 2017.11.30096 Adobe Acrobat Reader 2017.11.30080 Adobe Acrobat Reader 2017.11.30079 Adobe Acrobat Reader 2017.11.30078 Adobe Acrobat Reader 2017.11.30070 Adobe Acrobat Reader 2017.11.30068 Adobe Acrobat Reader 2017.11.30066 Adobe Acrobat Reader 2017.11.30059 Adobe Acrobat Reader 2017.8.30051 Adobe Acrobat DC 2019.10.20064 Adobe Acrobat DC 2019.8.20081 Adobe Acrobat DC 2019.8.20080 Adobe Acrobat DC 2019.8.20071 Adobe Acrobat DC 2015.6.30461 Adobe Acrobat DC 2015.6.30457 Adobe Acrobat DC 2015.6.30456 Adobe Acrobat DC 2015.6.30452 Adobe Acrobat DC 2015.6.30448 Adobe Acrobat DC 2015.6.30434 Adobe Acrobat DC 2015.6.30418 Adobe Acrobat DC 2015.6.30417 Adobe Acrobat DC 2015.6.30416 Adobe Acrobat DC 2015.6.30413 Adobe Acrobat DC 2015.6.30394 Adobe Acrobat DC 2015.6.30392 Adobe Acrobat DC 2015.6.30355 Adobe Acrobat DC 2015.6.30352 Adobe Acrobat DC 2015.6.30306 Adobe Acrobat DC 2015.009.20069 Adobe Acrobat DC 2015.008.20082 Adobe Acrobat DC 2015.007.20033 Adobe Acrobat DC 2015.006.30094 Adobe Acrobat DC 2015.006.30060 Adobe Acrobat DC 2015.006.30033 Adobe Acrobat 2017.11.30110 Adobe Acrobat 2017.11.30106 Adobe Acrobat 2017.11.30105 Adobe Acrobat 2017.11.30102 Adobe Acrobat 2017.11.30099 Adobe Acrobat 2017.11.30096 Adobe Acrobat 2017.11.30080 Adobe Acrobat 2017.11.30079 Adobe Acrobat 2017.11.30078 Adobe Acrobat 2017.11.30070 Adobe Acrobat 2017.11.30068 Adobe Acrobat 2017.11.30066 Adobe Acrobat 2017.11.30059 Adobe Acrobat 2017.8.30051 |
| Not Vulnerable: |
Adobe Acrobat Reader DC 2019.10.20069 Adobe Acrobat Reader DC 2017.11.30113 Adobe Acrobat Reader DC 2015.6.30464 Adobe Acrobat DC 2019.10.20069 Adobe Acrobat DC 2015.6.30464 Adobe Acrobat 2017.11.30113 |
Discussion
Adobe Acrobat and Reader CVE-2018-16011 Arbitrary Code Execution Vulnerability
Adobe Acrobat and Reader are prone to an unspecified arbitrary code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the application. Failed attacks may cause a denial-of-service condition.
Note: This issue was previously discussed in BID 106164 (Adobe Acrobat and Reader APSB18-41 Multiple Arbitrary Code Execution Vulnerabilities) but has been given its own record to better document it.
Adobe Acrobat and Reader are prone to an unspecified arbitrary code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the application. Failed attacks may cause a denial-of-service condition.
Note: This issue was previously discussed in BID 106164 (Adobe Acrobat and Reader APSB18-41 Multiple Arbitrary Code Execution Vulnerabilities) but has been given its own record to better document it.
Solution / Fix
Adobe Acrobat and Reader CVE-2018-16011 Arbitrary Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Adobe Acrobat and Reader CVE-2018-16011 Arbitrary Code Execution Vulnerability
References:
References: