CVE-2015-8458

Heap-based buffer overflow in AGM.dll in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to execute arbitrary code via a multiple-layer PDF document, a different vulnerability than CVE-2015-6696 and CVE-2015-6698.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
adobeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 85%
VendorProductVersion
adobeacrobat
10.0 ≤
𝑥
≤ 10.1.15
adobeacrobat
11.0.0 ≤
𝑥
≤ 11.0.12
adobeacrobat_dc
15.006.30060 ≤
𝑥
< 15.006.30094
adobeacrobat_dc
15.008.20082 ≤
𝑥
< 15.009.20069
adobeacrobat_reader
10.0 ≤
𝑥
≤ 10.1.15
adobeacrobat_reader
11.0.0 ≤
𝑥
≤ 11.0.12
adobeacrobat_reader_dc
15.006.30060 ≤
𝑥
< 15.006.30094
adobeacrobat_reader_dc
15.008.20082 ≤
𝑥
< 15.009.20069
𝑥
= Vulnerable software versions