Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2024-39425

Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could lead to privilege escalation. Exploitation of this issue require local low-privilege access to the affected system and attack complexity is high.

  • Published: Aug 14, 2024
  • Updated: Aug 15, 2024
  • CVE: CVE-2024-39425
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7
  • AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

CWEs:

Software From Fixed in
adobe / acrobat 20.001.30005 20.005.30655
adobe / acrobat 24.001.20604 24.001.30159
adobe / acrobat_dc 15.008.20082 24.002.21005
adobe / acrobat_reader 20.001.3005 20.005.30655
adobe / acrobat_reader_dc 15.008.20082 24.002.21005