CVE-2025-27158

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 11, 2025
Updated: Mar 12, 2025
CWE ID 824

Summary

CVE-2025-27158 is a newly disclosed vulnerability impacting Acrobat Reader versions 24.001.30225, 20.005.30748, and 25.001.20428, and potentially older editions. This issue is classified as an Access of Uninitialized Pointer vulnerability, which enables an attacker to execute arbitrary code once a victim opens a maliciously crafted file. Successful exploitation of this vulnerability requires user interaction.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share