AI description
CVE-2025-27158 is an Access of Uninitialized Pointer vulnerability affecting Adobe Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428, and earlier. The vulnerability can lead to arbitrary code execution within the context of the current user. Exploitation of this vulnerability requires user interaction, specifically, a victim must open a maliciously crafted file. An attacker could exploit this to execute arbitrary code within the application by enticing a user to open a specially crafted PDF file.
- Description
- Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
- Source
- psirt@adobe.com
- NVD status
- Analyzed
CVSS 3.1
- Type
- Secondary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Severity
- HIGH
- psirt@adobe.com
- CWE-824
- Hype score
- Not currently trending
2025-04-23 の人気記事はコチラでした。(自動ツイート) #Hacker_Trends ――― [하루한줄] CVE-2025-27158: Adobe Acrobat Reader의 Uninitialized Pointer로 인한 RCE 취약점 - hackyboiz https://t.co/AkidDfkzQs https://t.co/WXMzeOhwP0
@motikan2010
24 Apr 2025
122 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-27158: RCE Vulnerability due to Uninitialized Pointer in Adobe Acrobat Reader https://t.co/9BYRffahJt The vulnerability used an uninitialized pointer while processing an OpenType Font (OTF) file embedded in a PDF, resulting in a memory corruption vulnerability.
@hackyboiz
23 Apr 2025
6906 Impressions
37 Retweets
112 Likes
61 Bookmarks
0 Replies
0 Quotes
برای برنامه Adobe acrobat آسیب پذیری های جدیدی با کدهای شناسایی CVE-2025-27163 و CVE-2025-27164 و CVE-2025-27158 از نوع OS command execution منتشر شده است. برای پیشگیری و مقابله با این تهدید به روز رسانی لازم را اعمال نمایید. https://t.co/Poz3aKY03t https://t.co/pPN51P02lF
@AmirHossein_sec
22 Mar 2025
17 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 CVE-2025-27158 🔴 HIGH (7.8) 🏢 Adobe - Acrobat Reader 🏗️ 0 🔗 https://t.co/yqkOZZHY1N #CyberCron #VulnAlert #InfoSec https://t.co/pU7TuY06IU
@cybercronai
13 Mar 2025
235 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
New post from https://t.co/uXvPWJy6tj (CVE-2025-27158 | Adobe Acrobat Reader up to 20.005.30748/24.001.30225/25.001.20428 uninitialized pointer (apsb25-14 / Nessus ID 232599)) has been published on https://t.co/CcoV0PKtKK
@WolfgangSesin
12 Mar 2025
11 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-27158 Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arb… https://t.co/Ht1EAkz9r4
@CVEnew
11 Mar 2025
274 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4CE8886E-41A3-4051-9445-AA467F4785D6",
"versionEndExcluding": "20.005.30763",
"versionStartIncluding": "20.001.30002"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat:*:*:*:*:classic:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F2D7AB34-FCA3-4BA4-BA0F-CF1550587348",
"versionEndExcluding": "24.001.30235",
"versionStartIncluding": "24.0.0"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*",
"vulnerable": true,
"matchCriteriaId": "44FF55AD-AB58-4C0C-B360-548B2D56A1A6",
"versionEndExcluding": "25.001.20432",
"versionStartIncluding": "15.008.20082"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:classic:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3CDBE304-E9A0-41A4-AA38-015B14F90299",
"versionEndExcluding": "20.005.30763",
"versionStartIncluding": "20.001.30002"
},
{
"criteria": "cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FD3D1C22-BAF2-4249-A295-C63DB076CE3F",
"versionEndExcluding": "25.001.20432",
"versionStartIncluding": "15.008.20082"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "387021A0-AF36-463C-A605-32EA7DAC172E"
},
{
"criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
]