Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2017-16399

EPSS 9.18% · P93
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2017-16399

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, and 11.0.22 and earlier versions. This issue is due to an untrusted pointer dereference in the XPS parsing module. In this scenario, the input is crafted in a way that the computation results in pointers to memory locations that do not belong to the relevant process address space. The dereferencing operation is a read operation, and an attack can result in sensitive data exposure.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款Adobe产品XPS解析模块缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Adobe Acrobat DC for Windows和Macintosh等都是美国奥多比(Adobe)公司的基于Windows和Macintosh平台的产品。Adobe Acrobat DC for Windows和Macintosh是一套桌面版PDF解决方案;Acrobat Reader DC for Windows和Macintosh是一套用于查看、打印和批注PDF的工具。XPS conversion moudle是其中的一个XPS格式转换模块。 多款Adobe产品中的XPS解析模块存在越边界读取
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-Adobe Acrobat Reader 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, 11.0.22 and earlier versions Adobe Acrobat Reader 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, 11.0.22 and earlier versions -

II. Public POCs for CVE-2017-16399

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2017-16399

Please Login to view more intelligence information

Same Patch Batch · n/a · 2017-12-09 · 86 CVEs total

CVE-2017-16393多款Adobe产品安全漏洞
CVE-2017-16390多款Adobe产品安全漏洞
CVE-2017-16391多款Adobe产品安全漏洞
CVE-2017-16389多款Adobe产品安全漏洞
CVE-2017-16386多款Adobe产品缓冲区错误漏洞
CVE-2017-16385多款Adobe产品缓冲区错误漏洞
CVE-2017-16384多款Adobe产品缓冲区错误漏洞
CVE-2017-16383多款Adobe产品缓冲区错误漏洞
CVE-2017-16382多款Adobe产品image conversion模块缓冲区错误漏洞
CVE-2017-16387多款Adobe产品缓冲区错误漏洞
CVE-2017-16392多款Adobe产品缓冲区错误漏洞
CVE-2017-16394多款Adobe产品WebCapture模块缓冲区错误漏洞
CVE-2017-16395多款Adobe产品缓冲区错误漏洞
CVE-2017-16396多款Adobe产品缓冲区错误漏洞
CVE-2017-16397多款Adobe产品image conversion模块缓冲区错误漏洞
CVE-2017-16398多款Adobe产品安全漏洞
CVE-2017-16400多款Adobe产品JPEG 2000解析器缓冲区错误漏洞
CVE-2017-16401多款Adobe产品缓冲区错误漏洞
CVE-2017-16402多款Adobe产品JPEG 2000模块缓冲区错误漏洞
CVE-2017-16403多款Adobe产品image conversion模块缓冲区错误漏洞

Showing top 20 of 86 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2017-16399

No comments yet


Leave a comment