Adobe Acrobat Reader DC 17.012.20098

17.012.20098 Out of cycle update, August 29, 2017



8/30 追記

Adobe Reader DC XFA closeDoc Use-After-Free Remote Code Execution Vulnerability.

https://www.adobe.com/devnet-docs/acrobatetk/tools/ReleaseNotes/DC/dccontinuousaug2017qfe2.html#dccontinuousaugusttwentyseventeenqfetwo

Update to Security Bulletin (APSB17-24) - Adobe Product Security Incident Response Team (PSIRT) Blog

The August 29 updates resolve a functional regression with XFA forms functionality that affected some users, as well as provide a resolution to security vulnerability CVE-2017-11223. This CVE was originally addressed in the August 8 updates (versions 2017.012.20093, 2017.011.30059 and 2015.006.30352). Due to a functional regression in those releases, optional hotfixes [0,1,2] were offered to affected customers that temporarily reverted the fix for CVE-2017-11223. The August 29 releases resolve both the functional regression and provide a fix for CVE-2017-11223.

2017.012.20093 で対処したけど 2017.012.20095 で戻しちゃったので再度 CVE-2017-11223 の脆弱性に再度対処しましたと。