CVE-2012-0275: Buffer Overflow
Published Sep 4, 2012
·Updated
Heap-based buffer overflow in Photoshop.exe in Adobe Photoshop CS5 12.x before 12.0.5, CS5.1 12.1.x before 12.1.1, and CS6 13.x before 13.0.1 allows remote attackers to execute arbitrary code via a crafted TIFF image with SGI24LogLum compression.
Affected Software
6 affected components
Adobe Photoshop Cs5.5=12.0.1
Adobe Photoshop Cs5.5=12.0.2
Adobe Photoshop Cs5.5=12.0.3
Adobe Photoshop Cs5.5=12.0.4
Adobe Photoshop Cs5.5=12.1
Adobe Photoshop CS6=13.0
Event History
Sep 4, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-0275?
CVE-2012-0275 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2012-0275?
To fix CVE-2012-0275, update Adobe Photoshop to the latest version as specified in the security advisory.
3
Which versions of Photoshop are affected by CVE-2012-0275?
CVE-2012-0275 affects Adobe Photoshop CS5 12.x before 12.0.5, CS5.1 12.1.x before 12.1.1, and CS6 13.x before 13.0.1.
4
What type of vulnerability is CVE-2012-0275?
CVE-2012-0275 is a heap-based buffer overflow vulnerability.
5
Can CVE-2012-0275 be exploited remotely?
Yes, CVE-2012-0275 can be exploited remotely via a crafted TIFF image.