vciy

Adobe Acrobat and Reader: 83 records in one advisory

83 records announced together, published between 2019-05-22 and 2020-07-06, every one of them citing the same advisory.

The advisory

Every record in this batch cites https://helpx.adobe.com/security/products/acrobat/apsb19-41.html. That is the CNA's own reference, held in the index, and it is why these records are on one page.

What the records offer

No record in this batch publishes a fixed version in held sources.

No record in this batch is listed by CISA in held sources.

5 of 83 records name something of its own. For the other 78, held sources say the same thing about each.

Most commonly mapped weakness across the batch: Out-of-Bounds Read.

What this page does not cover

Every record citing this advisory is on this page.

The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.

What this batch was researched, not held

82 entries, 26 credit lines, and one identifier Adobe renumbered

APSB19-41 is Adobe's Acrobat and Reader update of 13 August 2019, at priority 2, covering the Continuous track at 2019.012.20035 and earlier along with the 2017 and 2015 classic tracks. Its table lists 82 identifiers and its acknowledgements credit every one of them, spread across 26 credit lines, with nothing attributed to Adobe's own testing. Almost all of it is memory safety: 25 out-of-bounds read entries, 25 use-after-free, 9 out-of-bounds write, 8 heap overflow, 5 type confusion, 3 untrusted pointer dereference, 2 integer overflow, and one each of command injection, buffer error, double free, internal address disclosure and weak encryption. Four reporters carry most of the load. Ke Liu of Tencent Security Xuanwu Lab has 12, Mateusz Jurczyk of Google Project Zero has 12, Mat Powell of Trend Micro Zero Day Initiative has 8, and Steven Seeley of Source Incite has 15 across three credit lines, one direct and two through brokers. Adobe then edited the bulletin six times into December 2019, and one of those edits was not an addition.

These came from roughly two dozen unrelated reporters and were shipped on one day, so the record you are reading stands on its own. One oddity explains a duplicate you may meet: Adobe renumbered CVE-2019-7832 to CVE-2019-8066 on 22 August 2019, and both identifiers still circulate for the same issue.

2019-08-13Adobe publishes APSB19-41 with 82 identifiers, all credited to outside reporters
2019-08-22Adobe renumbers CVE-2019-7832 to CVE-2019-8066 in the bulletin's revision list
2019-11-19Adobe adds CVE-2019-8249 to CVE-2019-8252
2019-12-10Adobe adds CVE-2019-8257, four months after publication

Adobe gives a bug class and an impact for each entry and stops there, so two entries in the same class are indistinguishable in the record. There is no affected file, no trigger and no report date anywhere in the bulletin. It also does not say whether any of the 82 reports were duplicates of one another, which matters here because three separate credit lines carry the same researcher's handle.

Written from web.archive.org, helpx.adobe.com, rapid7.com. Reviewed for whether every claim traces to one of them, by two independent graders, citation support 4.44 of 5, uniqueness 4 of 5. Stated at high confidence. Nothing in this box is a value the index holds, and none of it opens a receipt.

Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.

CVE-2019-7832no title heldHeap Overflow
CVE-2019-7965no title heldOut-of-Bounds Write
CVE-2019-8002no title heldOut-of-Bounds Read
CVE-2019-8003no title heldUse After Free
CVE-2019-8004no title heldOut-of-Bounds Read
CVE-2019-8005no title heldOut-of-Bounds Read
CVE-2019-8006no title heldUntrusted Pointer Dereference
CVE-2019-8007no title heldOut-of-Bounds Read
CVE-2019-8008no title heldOut-of-Bounds Write
CVE-2019-8009no title heldOut-of-Bounds Write
CVE-2019-8010no title heldOut-of-Bounds Read
CVE-2019-8011no title heldOut-of-Bounds Read
CVE-2019-8012no title heldOut-of-Bounds Read
CVE-2019-8013no title heldUse After Free
CVE-2019-8014no title heldHeap Overflow
CVE-2019-8015no title heldHeap Overflow
CVE-2019-8016no title heldOut-of-Bounds Write
CVE-2019-8017no title heldUntrusted Pointer Dereference
CVE-2019-8018no title heldOut-of-Bounds Read
CVE-2019-8019no title heldType Confusion
CVE-2019-8020no title heldOut-of-Bounds Read
CVE-2019-8021no title heldOut-of-Bounds Read
CVE-2019-8022no title heldOut-of-Bounds Write
CVE-2019-8023no title heldOut-of-Bounds Write
CVE-2019-8024no title heldUse After Free
CVE-2019-8025no title heldUse After Free
CVE-2019-8026no title heldUse After Free
CVE-2019-8027no title heldOut-of-Bounds Write
CVE-2019-8028no title heldUse After Free
CVE-2019-8029no title heldUse After Free
CVE-2019-8030no title heldUse After Free
CVE-2019-8031no title heldUse After Free
CVE-2019-8032no title heldOut-of-Bounds Read
CVE-2019-8033no title heldUse After Free
CVE-2019-8034no title heldUse After Free
CVE-2019-8035no title heldOut-of-Bounds Read
CVE-2019-8036no title heldUse After Free
CVE-2019-8037no title heldOut-of-Bounds Read
CVE-2019-8038no title heldUse After Free
CVE-2019-8039no title heldUse After Free
CVE-2019-8040no title heldOut-of-Bounds Read
CVE-2019-8041no title heldHeap Overflow
CVE-2019-8042no title heldHeap Overflow
CVE-2019-8043no title heldOut-of-Bounds Read
CVE-2019-8044doubleDouble Free
CVE-2019-8045no title heldUntrusted Pointer Dereference
CVE-2019-8046no title heldHeap Overflow
CVE-2019-8047no title heldUse After Free
CVE-2019-8048buffer errorBuffer Error
CVE-2019-8049no title heldHeap Overflow
CVE-2019-8050no title heldHeap Overflow
CVE-2019-8051no title heldUse After Free
CVE-2019-8052no title heldOut-of-Bounds Read
CVE-2019-8053no title heldUse After Free
CVE-2019-8054no title heldUse After Free
CVE-2019-8055no title heldUse After Free
CVE-2019-8056no title heldUse After Free
CVE-2019-8057no title heldUse After Free
CVE-2019-8058no title heldUse After Free
CVE-2019-8059no title heldUse After Free
CVE-2019-8060command injectionCommand Injection
CVE-2019-8061no title heldUse After Free
CVE-2019-8066no title heldHeap Overflow
CVE-2019-8077no title heldOut-of-Bounds Read
CVE-2019-8094no title heldOut-of-Bounds Read
CVE-2019-8095no title heldOut-of-Bounds Read
CVE-2019-8096no title heldOut-of-Bounds Read
CVE-2019-8097internal ipInternal IP Disclosure
CVE-2019-8098no title heldOut-of-Bounds Write
CVE-2019-8099no title heldInteger Overflow
CVE-2019-8100no title heldOut-of-Bounds Write
CVE-2019-8101no title heldInteger Overflow
CVE-2019-8102no title heldOut-of-Bounds Read
CVE-2019-8103no title heldOut-of-Bounds Read
CVE-2019-8104no title heldOut-of-Bounds Read
CVE-2019-8105no title heldOut-of-Bounds Read
CVE-2019-8106no title heldOut-of-Bounds Read
CVE-2019-8237insufficiently robust encryption securityInsufficiently Robust Encryption
CVE-2019-8249no title heldType Confusion
CVE-2019-8250no title heldType Confusion
CVE-2019-8251no title heldType Confusion
CVE-2019-8252no title heldType Confusion
CVE-2019-8257no title heldUse After Free

83 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.