vciy

Adobe Acrobat Reader: 39 records in one advisory

39 records announced together, published 2018-02-27, every one of them citing the same advisory.

The advisory

Every record in this batch cites https://helpx.adobe.com/security/products/acrobat/apsb18-02.html. That is the CNA's own reference, held in the index, and it is why these records are on one page.

What the records offer

No record in this batch publishes a fixed version in held sources.

No record in this batch is listed by CISA in held sources.

24 of 39 records name something of its own. For the other 15, held sources say the same thing about each.

Most commonly mapped weakness across the batch: Out-of-bounds read.

What this page does not cover

This batch is 39 of the 44 records that cite the same advisory. The other 5 are different findings announced alongside it.

None of those 5 is grouped with any other. Each one has its own record page and nothing else.

The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.

Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.

CVE-2018-4872security bypass leads sandboxSecurity bypass
CVE-2018-4879processesOut-of-bounds write
CVE-2018-4880u3dOut-of-bounds read
CVE-2018-4881bmpOut-of-bounds read
CVE-2018-4882string literal parserOut-of-bounds read
CVE-2018-4883no title heldOut-of-bounds read
CVE-2018-4884embedsOut-of-bounds read
CVE-2018-4885no title heldOut-of-bounds read
CVE-2018-4886no title heldOut-of-bounds read
CVE-2018-4887unicode mapping invoked duringOut-of-bounds read
CVE-2018-4888cause violation exception danglingUse After Free
CVE-2018-4889no title heldOut-of-bounds read
CVE-2018-4890control-flow hijack information leakHeap Overflow
CVE-2018-4891no title heldOut-of-bounds read
CVE-2018-4892jbig2 decoder contains malformedUse After Free
CVE-2018-4893no title heldOut-of-bounds read
CVE-2018-4894no title heldOut-of-bounds read
CVE-2018-4895no title heldOut-of-bounds write
CVE-2018-4896no title heldOut-of-bounds read
CVE-2018-4897parsesOut-of-bounds read
CVE-2018-4898adds vector graphics fixedOut-of-bounds write
CVE-2018-4899initialOut-of-bounds read
CVE-2018-4900objectOut-of-bounds read
CVE-2018-4901document identity representation executeOut-of-bounds write
CVE-2018-4902rendering containing video correspondingUse After Free
CVE-2018-4903no title heldOut-of-bounds read
CVE-2018-4904which causes out boundsHeap Overflow
CVE-2018-4905no title heldOut-of-bounds read
CVE-2018-4906graphicOut-of-bounds read
CVE-2018-4907no title heldOut-of-bounds read
CVE-2018-4908ttfOut-of-bounds read
CVE-2018-4909no title heldOut-of-bounds read
CVE-2018-4910with manipulates optional contentHeap Overflow
CVE-2018-4911bookmark functionalityUse After Free
CVE-2018-4912no title heldOut-of-bounds read
CVE-2018-4913dom script definitionsUse After Free
CVE-2018-4914no title heldOut-of-bounds read
CVE-2018-4915colorOut-of-bounds write
CVE-2018-4916handlessOut-of-bounds write

39 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.