CVE-2026-79910
Acrobat Reader is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 5.5
- CVSS vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
- EPSS probability
- 0.17%
- CWE
- CWE-125
- Published
- 2026-09-08
- Last modified
- 2026-09-10
Affected products
- Adobe Adobe Acrobat
- Adobe Adobe Acrobat
- Adobe Acrobat Reader
- Adobe Acrobat Reader
- Adobe Acrobat 2024
- Adobe Acrobat 2024
Weakness type
Related vulnerabilities
- CVE-2026-89160 — PCRE2 before 10.48 has a pcre2_match out-of-bounds read during the PCRE2_MATCH_INVALID_UTF matching...
- CVE-2026-89156 — PCRE2 before 10.48 has a pcre2_match out-of-bounds read after a JIT fallback when an attacker can...
- CVE-2026-16172 — Netskope Endpoint DLP Service Out-of-Bounds Read Leading to Process Crash
- CVE-2026-49837 — GoBGP: BGP OPEN capability parser may read capability values outside declared CapLen boundaries
- CVE-2026-88054 — Tesseract: Denial of service via empty-stack dereference in Plumbing/Series at model load
- CVE-2026-89046 — zstd-jni 1.5.5-6 through 1.5.7-13 Out-of-Bounds Read via Negative Offset
- CVE-2026-88048 — Tesseract: Heap out-of-bounds write/read in FullyConnected::Forward via layer/weight-matrix dimension mismatch
- CVE-2026-87961 — ESP32-audioI2S 3.4.4 through 4.0.0 Heap-based Out-of-Bounds Read via Shadowed Length Parameter in read_ID3_Header