CVE-2016-1089: Adobe Acrobat
Critical severity, CVSS 9.8. EPSS: 5.8% chance of exploitation in the next 30 days.
Use-after-free vulnerability in Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-1091, CVE-2016-6944, CVE-2016-6945, CVE-2016-6946, CVE-2016-6949, CVE-2016-6952, CVE-2016-6953, CVE-2016-6961, CVE-2016-6962, CVE-2016-6963, CVE-2016-6964, CVE-2016-6965, CVE-2016-6967, CVE-2016-6968, CVE-2016-6969, CVE-2016-6971, CVE-2016-6979, CVE-2016-6988, and CVE-2016-6993.
Affected products
- Adobe Acrobat: up to and including 11.0.17
- Adobe Acrobat DC: up to and including 15.006.30201; up to and including 15.017.20053
- Adobe Acrobat Reader DC: up to and including 15.006.30201; up to and including 15.017.20053
- Adobe Reader: up to and including 11.0.17
Published 2016-10-13. Last modified 2026-06-17.