March 3, 2022 · Applied Cybernetics Group
CVE-2013-0640 — Adobe Reader and Acrobat
Adobe Reader and Acrobat Memory Corruption Vulnerability
- Added to KEV
2022-03-03- Federal due date
2022-03-24- Vendor
- Adobe
- Product
- Reader and Acrobat
- EPSS
- 99.7th percentile (score 0.923, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2013-0640
CISA short description
An memory corruption vulnerability exists in the acroform.dll in Adobe Reader that allows an attacker to perform remote code execution.
Required action
Apply updates per vendor instructions.