CVE-2016-1007

Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.20060 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1009.

Published at
2016-03-09T11:59Z
2979 days ago
Modified
2016-12-03T03:19Z
2710 days ago
CWE-119
Problem type

Impact

CVSS v3 vector string
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Attack Complexity

Privileges Required

User Interaction

Scope

Confidentiality

Integrity

Availability

Severity Score Vector

9.8CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References


URLType
helpx.adobe.com
https://helpx.adobe.com/security/products/acrobat/apsb16-09.html
CONFIRM
84215
http://www.securityfocus.com/bid/84215
BID
www.zerodayinitiative.com
http://www.zerodayinitiative.com/advisories/ZDI-16-189
MISC
1035199
http://www.securitytracker.com/id/1035199
SECTRACK

GET https://vulnerabilitydata.com/api/details/CVE-2016-1007

{
	"id": "CVE-2016-1007",
	"published_date": "2016-03-09T11:59Z",
	"last_modified_date": "2016-12-03T03:19Z",
	"assigner": "psirt@adobe.com",
	"description": "Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.20060 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1009.",
	"references": [
		{
			"url": "https://helpx.adobe.com/security/products/acrobat/apsb16-09.html",
			"name": "https://helpx.adobe.com/security/products/acrobat/apsb16-09.html",
			"refsource": "CONFIRM",
			"tags": [
				"Patch",
				"Vendor Advisory"
			]
		},
		{
			"url": "http://www.securityfocus.com/bid/84215",
			"name": "84215",
			"refsource": "BID",
			"tags": []
		},
		{
			"url": "http://www.zerodayinitiative.com/advisories/ZDI-16-189",
			"name": "http://www.zerodayinitiative.com/advisories/ZDI-16-189",
			"refsource": "MISC",
			"tags": []
		},
		{
			"url": "http://www.securitytracker.com/id/1035199",
			"name": "1035199",
			"refsource": "SECTRACK",
			"tags": []
		}
	],
	"impact": {
		"baseMetricV3": {
			"cvssV3": {
				"version": "3.0",
				"vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
				"attackVector": "NETWORK",
				"attackComplexity": "LOW",
				"privilegesRequired": "NONE",
				"userInteraction": "NONE",
				"scope": "UNCHANGED",
				"confidentialityImpact": "HIGH",
				"integrityImpact": "HIGH",
				"availabilityImpact": "HIGH",
				"baseScore": 9.8,
				"baseSeverity": "CRITICAL"
			},
			"exploitabilityScore": 3.9,
			"impactScore": 5.9
		},
		"baseMetricV2": {
			"cvssV2": {
				"version": "2.0",
				"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
				"accessVector": "NETWORK",
				"accessComplexity": "LOW",
				"authentication": "NONE",
				"confidentialityImpact": "COMPLETE",
				"integrityImpact": "COMPLETE",
				"availabilityImpact": "COMPLETE",
				"baseScore": 10
			},
			"severity": "HIGH",
			"exploitabilityScore": 10,
			"impactScore": 10,
			"acInsufInfo": true,
			"obtainAllPrivilege": false,
			"obtainUserPrivilege": false,
			"obtainOtherPrivilege": false
		}
	},
	"problem_type": "CWE-119"
}