Vulnerability Name: | CVE-2015-3046 (CCN-103170) |
Assigned: | 2015-05-12 |
Published: | 2015-05-12 |
Updated: | 2017-01-05 |
Summary: | Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-9161, CVE-2015-3049, CVE-2015-3050, CVE-2015-3051, CVE-2015-3052, CVE-2015-3056, CVE-2015-3057, CVE-2015-3070, and CVE-2015-3076.
|
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)Exploitability Metrics: | Attack Vector (AV): Network Attack Complexity (AC): Low Privileges Required (PR): None User Interaction (UI): None | Scope: | Scope (S): Changed
| Impact Metrics: | Confidentiality (C): High Integrity (I): High Availibility (A): High |
|
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Low Authentication (Au): None | Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete | 9.3 High (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C) 6.9 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)Exploitability Metrics: | Access Vector (AV): Network Access Complexity (AC): Medium Athentication (Au): None
| Impact Metrics: | Confidentiality (C): Complete Integrity (I): Complete Availibility (A): Complete |
|
Vulnerability Type: | CWE-119
|
Vulnerability Consequences: | Gain Access |
References: | Source: MITRE Type: CNA CVE-2015-3046
Source: BID Type: Third Party Advisory, VDB Entry 74600
Source: CCN Type: BID-74600 Adobe Reader and Acrobat Multiple Memory Corruption Vulnerabilities
Source: SECTRACK Type: Third Party Advisory, VDB Entry 1032284
Source: XF Type: UNKNOWN adobe-reader-cve20153046-code-exec(103170)
Source: CCN Type: Adobe Security Bulletin APSB15-10 Security Updates available for Adobe Reader and Acrobat
Source: CONFIRM Type: Patch, Vendor Advisory https://helpx.adobe.com/security/products/reader/apsb15-10.html
|
Vulnerable Configuration: | Configuration 1: cpe:/a:adobe:acrobat:10.1.0:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.1:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.2:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.3:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.4:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.5:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.6:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.7:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.8:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.9:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.10:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.11:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.12:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:10.1.13:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.0:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.1:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.2:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.3:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.4:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.5:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.6:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.7:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.8:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.9:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat:11.0.10:*:*:*:*:*:*:*AND cpe:/o:apple:mac_os_x:*:*:*:*:*:*:*:*OR cpe:/o:microsoft:windows:*:*:*:*:*:*:*:* Configuration 2: cpe:/a:adobe:acrobat_reader:10.1.0:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.1:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.2:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.3:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.4:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.5:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.6:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.7:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.8:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.9:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.10:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.11:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.12:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:10.1.13:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.0:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.1:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.2:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.3:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.4:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.5:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.6:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.7:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.8:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.9:*:*:*:*:*:*:*OR cpe:/a:adobe:acrobat_reader:11.0.10:*:*:*:*:*:*:*AND cpe:/o:apple:mac_os_x:*:*:*:*:*:*:*:*OR cpe:/o:microsoft:windows:*:*:*:*:*:*:*:* Denotes that component is vulnerable |
BACK |
adobe acrobat 10.1.0
adobe acrobat 10.1.1
adobe acrobat 10.1.2
adobe acrobat 10.1.3
adobe acrobat 10.1.4
adobe acrobat 10.1.5
adobe acrobat 10.1.6
adobe acrobat 10.1.7
adobe acrobat 10.1.8
adobe acrobat 10.1.9
adobe acrobat 10.1.10
adobe acrobat 10.1.11
adobe acrobat 10.1.12
adobe acrobat 10.1.13
adobe acrobat 11.0.0
adobe acrobat 11.0.1
adobe acrobat 11.0.2
adobe acrobat 11.0.3
adobe acrobat 11.0.4
adobe acrobat 11.0.5
adobe acrobat 11.0.6
adobe acrobat 11.0.7
adobe acrobat 11.0.8
adobe acrobat 11.0.9
adobe acrobat 11.0.10
apple mac os x *
microsoft windows *
adobe acrobat reader 10.1.0
adobe acrobat reader 10.1.1
adobe acrobat reader 10.1.2
adobe acrobat reader 10.1.3
adobe acrobat reader 10.1.4
adobe acrobat reader 10.1.5
adobe acrobat reader 10.1.6
adobe acrobat reader 10.1.7
adobe acrobat reader 10.1.8
adobe acrobat reader 10.1.9
adobe acrobat reader 10.1.10
adobe acrobat reader 10.1.11
adobe acrobat reader 10.1.12
adobe acrobat reader 10.1.13
adobe acrobat reader 11.0.0
adobe acrobat reader 11.0.1
adobe acrobat reader 11.0.2
adobe acrobat reader 11.0.3
adobe acrobat reader 11.0.4
adobe acrobat reader 11.0.5
adobe acrobat reader 11.0.6
adobe acrobat reader 11.0.7
adobe acrobat reader 11.0.8
adobe acrobat reader 11.0.9
adobe acrobat reader 11.0.10
apple mac os x *
microsoft windows *