CVE Vulnerabilities

CVE-2025-64787

Improper Verification of Cryptographic Signature

Published: Dec 09, 2025 | Modified: Dec 12, 2025
CVSS 3.x
4
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Acrobat Reader versions 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 and earlier are affected by an Improper Verification of Cryptographic Signature vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass cryptographic protections and gain limited unauthorized write access. Exploitation of this issue does not require user interaction.

Weakness

The product does not verify, or incorrectly verifies, the cryptographic signature for data.

Affected Software

Name Vendor Start Version End Version
Acrobat Adobe 20.001.3005 (including) 20.005.30838 (excluding)
Acrobat_dc Adobe * 25.001.20997 (excluding)
Acrobat_reader Adobe 20.001.3005 (including) 20.005.30838 (excluding)
Acrobat_reader_dc Adobe * 25.001.20997 (excluding)

References