Umbra Wiki cve cve/CVE-2021-21017
Back to wiki

CVE-2021-21017 — Adobe Acrobat and Reader Heap-based Buffer Overflow Vulnerability

provenance: imported · CVE: CVE-2021-21017

CVE-2021-21017: Adobe Acrobat and Reader Heap-based Buffer Overflow Vulnerability

CISA Known Exploited Vulnerability (KEV)

Vendor / project Adobe
Product Acrobat and Reader
Date added 2021-11-03
Due date 2021-11-17
Ransomware campaign use Unknown

Description

Acrobat Acrobat and Reader contain a heap-based buffer overflow vulnerability that could allow an unauthenticated attacker to achieve code execution in the context of the current user.

Required action (CISA)

Apply updates per vendor instructions.

Notes

https://nvd.nist.gov/vuln/detail/CVE-2021-21017

References

  • NVD: https://nvd.nist.gov/vuln/detail/CVE-2021-21017
  • KEV catalog: https://www.cisa.gov/known-exploited-vulnerabilities-catalog