### [CVE-2021-39846](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-39846) ![](https://img.shields.io/static/v1?label=Product&message=Acrobat%20Reader&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=unspecified%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Stack-based%20Buffer%20Overflow%20(CWE-121)&color=brightgreen) ### Description Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a stack overflow vulnerability due to insecure handling of a crafted PDF file, potentially resulting in memory corruption in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted PDF file in Acrobat Reader. ### POC #### Reference No PoCs from references. #### Github - https://github.com/0xCyberY/CVE-T4PDF - https://github.com/ARPSyndicate/cvemon