CVE-2024-39420
CVSS V2 None
CVSS V3 None
Description
Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could result in arbitrary code execution in the context of the current user. This issue occurs when the state of a resource changes between its check-time and use-time, allowing an attacker to manipulate the resource. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Overview
- CVE ID
- CVE-2024-39420
- Assigner
- adobe
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-08-14T15:07:28.784Z
- Last Modified Date
- 2024-08-14T15:56:10.836Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://helpx.adobe.com/security/products/acrobat/apsb24-57.html | vendor-advisory |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-39420 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-39420 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-08-15 13:19:03 | Added to TrackCVE |