vciy

Adobe Acrobat Reader: 46 records in one advisory

46 records announced together, published 2017-04-12, every one of them citing the same advisory.

The advisory

Every record in this batch cites https://helpx.adobe.com/security/products/acrobat/apsb17-11.html. That is the CNA's own reference, held in the index, and it is why these records are on one page.

What the records offer

No record in this batch publishes a fixed version in held sources.

No record in this batch is listed by CISA in held sources.

31 of 46 records name something of its own. For the other 15, held sources say the same thing about each.

Most commonly mapped weakness across the batch: Memory Corruption.

What this page does not cover

This batch is 46 of the 47 records that cite the same advisory. The other 1 are different findings announced alongside it.

None of those 1 is grouped with any other. Each one has its own record page and nothing else.

The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.

Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.

CVE-2017-3011ccitt fax filterInteger Overflow
CVE-2017-3012ocrInsecure Library Loading (DLL hijacking)
CVE-2017-3013remote loggingInsecure Library Loading (DLL hijacking)
CVE-2017-3014reset formUse After Free
CVE-2017-3015no title heldMemory Corruption
CVE-2017-3017malformedMemory Corruption
CVE-2017-3018rendererMemory Corruption
CVE-2017-3019product compact prcMemory Corruption
CVE-2017-3020weblinkInformation Disclosure
CVE-2017-3021no title heldInformation Disclosure
CVE-2017-3022headerInformation Disclosure
CVE-2017-3023no title heldMemory Corruption
CVE-2017-3024annotationsMemory Corruption
CVE-2017-3025objectMemory Corruption
CVE-2017-3026structureUse After Free
CVE-2017-3027choicelist elementUse After Free
CVE-2017-3028no title heldMemory Corruption
CVE-2017-3029no title heldInformation Disclosure
CVE-2017-3030aesMemory Corruption
CVE-2017-3031xsltInformation Disclosure
CVE-2017-3032no title heldInformation Disclosure
CVE-2017-3033no title heldInformation Disclosure
CVE-2017-3034layoutInteger Overflow
CVE-2017-3035no title heldUse After Free
CVE-2017-3036pcx picture exchangeMemory Corruption
CVE-2017-3037no title heldMemory Corruption
CVE-2017-3039ppklite security handlerMemory Corruption
CVE-2017-3040compressionMemory Corruption
CVE-2017-3041makeaccessibleMemory Corruption
CVE-2017-3042offsetsHeap Overflow
CVE-2017-3043no title heldInformation Disclosure
CVE-2017-3044scalingMemory Corruption
CVE-2017-3045palette boxInformation Disclosure
CVE-2017-3046contiguousInformation Disclosure
CVE-2017-3047engine's annotation-relatedUse After Free
CVE-2017-3048scan lineHeap Overflow
CVE-2017-3049no title heldHeap Overflow
CVE-2017-3050gifMemory Corruption
CVE-2017-3051no title heldMemory Corruption
CVE-2017-3052enhanced metaInformation Disclosure
CVE-2017-3053app13 segmentInformation Disclosure
CVE-2017-3054no title heldMemory Corruption
CVE-2017-3055fragment list tagHeap Overflow
CVE-2017-3056stringMemory Corruption
CVE-2017-3057no title heldUse After Free
CVE-2017-3065no title heldMemory Corruption

46 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.