漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
TALOS-2023-1794 - Adobe Acrobat Reader Thermometer use-after-free vulnerability
Vulnerability Description
Adobe Acrobat Reader versions 23.006.20360 (and earlier) and 20.005.30524 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
释放后使用
Vulnerability Title
Adobe Acrobat Reader 资源管理错误漏洞
Vulnerability Description
Adobe Acrobat Reader是美国奥多比(Adobe)公司的一款PDF查看器。该软件用于打印,签名和注释 PDF。 Adobe Acrobat Reader 2023.001.20174版本存在资源管理错误漏洞,该漏洞源于Thermometer Javascript 对象中存在释放后重用,通过特别构建的 javascript 代码可利用该漏洞,从而导致内存损坏和任意代码执行。
CVSS Information
N/A
Vulnerability Type
N/A