Vulnerabilities > CVE-2020-24438 - Use After Free vulnerability in Adobe products

047910
CVSS 3.3 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
NONE
local
low complexity
adobe
CWE-416

Summary

Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-free vulnerability that could result in a memory address leak. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vulnerable Configurations

Part Description Count
Application
Adobe
338
OS
Apple
1
OS
Microsoft
1

Common Weakness Enumeration (CWE)