{"id":"CVE-2026-81977","title":"Acrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could lead to disclosure of sensitive memory","summary":"Acrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of thi…","severity":"medium","cvss":5.5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","cwe":["CWE-191"],"vendor":"adobe","product":"acrobat","affected":["acrobat >= 24.001.20604, < 24.001.30429","acrobat_dc >= 15.008.20082, < 26.002.21901","acrobat_reader_dc >= 15.008.20082, < 26.002.21901"],"patched":["acrobat 24.001.30429","acrobat_dc 26.002.21901","acrobat_reader_dc 26.002.21901"],"published":"2026-09-08","updated":"2026-09-11","sourceUpdated":"2026-09-11T22:16:44.233","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-81977","references":[{"url":"https://helpx.adobe.com/security/products/acrobat/apsb26-141.html","label":"psirt@adobe.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-11T21:28:57.767374Z"},"epss":0.00173,"epssPercentile":0.07048,"ingestedAt":"2026-09-08T21:11:12.369Z","slug":"CVE-2026-81977","body":"## Overview\n\nAcrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.\n\n## Affected\n\n- `acrobat >= 24.001.20604, < 24.001.30429`\n- `acrobat_dc >= 15.008.20082, < 26.002.21901`\n- `acrobat_reader_dc >= 15.008.20082, < 26.002.21901`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `acrobat 24.001.30429`\n- `acrobat_dc 26.002.21901`\n- `acrobat_reader_dc 26.002.21901`","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":30.3,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}