Acrobat Out-of-Bounds Read Vulnerability (CVE-2021-40729)
ID: 3bc8ee53-ba3b-531c-ba26-96eda960a967
STIX ID: report--3bc8ee53-ba3b-531c-ba26-96eda960a967
Feed Name: Zscaler Security Research Blog
Threat Score
This report analyzes CVE-2021-40729, an out-of-bounds read in the Solid Framework component used by Adobe Acrobat/Reader and Foxit PDF Editor that can disclose memory and help bypass mitigations like ASLR; it includes a minimized PoC PDF demonstrating the crash, step-by-step debugging/heap dumps, explanation of how malformed SC (set color) operands cause the issue, affected product versions, and remediation guidance to update software.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
