First published: Wed Feb 10 2016(Updated: )
Adobe Photoshop CC 2014 before 15.2.4, Photoshop CC 2015 before 16.1.2, and Bridge CC before 6.2 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0951 and CVE-2016-0953.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Bridge | <=6.1 | |
Adobe Photoshop | <=16.1.1 | |
Apple iOS and macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0952 has a critical severity level as it allows attackers to execute arbitrary code or cause denial of service due to memory corruption.
To fix CVE-2016-0952, users should update Adobe Photoshop CC to version 15.2.4 or later and Adobe Bridge CC to version 6.2 or later.
CVE-2016-0952 affects Adobe Photoshop CC 2014 prior to 15.2.4, Adobe Photoshop CC 2015 prior to 16.1.2, and Adobe Bridge CC prior to version 6.2.
Yes, CVE-2016-0952 can lead to data loss as it can allow attackers to execute arbitrary code.
There are no official workarounds for CVE-2016-0952; the recommended action is to apply the necessary updates.