CVE-2017-11308

Adobe Acrobat and Reader versions 2017.012.20098 and earlier, 2017.011.30066 and earlier, 2015.006.30355 and earlier, 11.0.22 and earlier have an exploitable heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
adobeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
VendorProductVersion
adobeacrobat
11.0.0 ≤
𝑥
≤ 11.0.22
adobeacrobat
17.011.30066 ≤
𝑥
< 17.011.30068
adobeacrobat_dc
15.006.30355 ≤
𝑥
< 15.006.30392
adobeacrobat_dc
17.012.20098 ≤
𝑥
< 18.009.20044
adobeacrobat_reader
11.0.0 ≤
𝑥
≤ 11.0.22
adobeacrobat_reader
17.011.30066 ≤
𝑥
< 17.011.30068
adobeacrobat_reader_dc
15.006.30355 ≤
𝑥
< 15.006.30392
adobeacrobat_reader_dc
17.012.20098 ≤
𝑥
< 18.009.20044
𝑥
= Vulnerable software versions