HomeUpdatesAdobe fixes zero-day vulnerability in Acrobat Reader (with PoC exploit)

Adobe fixes zero-day vulnerability in Acrobat Reader (with PoC exploit)

Adobe has released a security update that fixes a zero-day vulnerability in Adobe Acrobat Readerthat could allow remote code execution. Applying the update is necessary given that a proof-of-concept (PoC) exploit.

Adobe Acrobat Reader zero-day vulnerability

The vulnerability is tracked as CVE-2024-41869, belongs to the category of so-called “use after free” bugs and could lead to remote code execution when opening a specially crafted PDF.

We are talking about a “use after free” error, when a program tries to access data in a specific memory location. This causes unexpected behavior, such as a program crashing or freezing. However, a malicious user could store malicious code in that memory location, which could be accessed and eventually used to execute malicious code on the targeted device.

See also: Siemens Industrial Edge Management: Warning! Critical vulnerability

The vulnerability has been patched in the latest versions of Adobe Reader and Adobe Acrobat and users are urged to update systems .

The PoC exploit was discovered in June

The Acrobat Reader zero-day was discovered in June through EXPMON, a sandbox-based platform created by cybersecurity Haifei Li to detect exploits, such as zero-days or hard-to-detect (unknown) exploits.

Unlike other similar services, this platform tries to detect the threat from a potential exploit or vulnerability, not from malware. This way of analysis is very useful for early detection of the threat.

The zero-day vulnerability in Adobe Acrobat Reader was discovered after a large number of samples, from a public source, were submitted to the EXPMON platform for analysis. These samples included a PDF containing a proof-of-concept exploit that caused a crash.

See also: Ivanti fixes vulnerability in Endpoint Management (EPM)

It was noted that the PoC exploit is a work in progress and does not contain any malicious payloads at this time. However, it was confirmed that it exploits a “user after free” bug, which could be used for remote code execution.

After Li disclosed the bug to Adobe, the company released a security in August. However, the update did not fix the flaw and it could be activated after closing various windows.

“ We tested the sample in the “patched” version of Adobe Reader. It displayed additional dialog boxes, but if the user clicked/closed those boxes, the application still crashed! Same UAF error! ”, the EXPMON account reported to X

Adobe fixes zero-day vulnerability in Acrobat Reader (with PoC exploit)
Adobe patches zero-day vulnerability in Acrobat Reader

But now, Adobe has released a new security update that fixes the bug.

It is vital for individuals and organizations to take proactive steps to protect their digital assets and information from cyber threats. As technology continues to advance, cybercriminals are developing more sophisticated methods to exploit vulnerabilities in software and systems. This highlights the importance of regular software updates, as they often contain security patches that address known vulnerabilities.

See also: Microsoft Patch Tuesday September 2024: Fix 79 vulnerabilities

Additionally, it is essential to educate oneself on cybersecurity best practices and stay informed about current threats and tactics used by hackers. By being aware of potential risks, individuals can make better decisions when it comes to their online activities.

In addition to upgrading Adobe Acrobat Reader and staying up-to-date on cybersecurity news, users should also consider implementing additional layers of protection, such as firewalls, antivirus software, and strong passwords.

Source: www.bleepingcomputer.com

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS