CVE-2019-7132: Adobe Bridge CC AdobePSL TIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Adobe Bridge CC versions 9.0.2 have an out-of-bounds write vulnerability. Successful exploitation could lead to remote code execution.
Other sources
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Adobe Bridge CC. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of TIF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-7132?
CVE-2019-7132 is considered to have a critical severity level due to the potential for remote code execution.
How do I fix CVE-2019-7132?
To fix CVE-2019-7132, update Adobe Bridge CC to the latest version provided by Adobe after version 9.0.2.
What versions of Adobe Bridge CC are affected by CVE-2019-7132?
CVE-2019-7132 specifically affects Adobe Bridge CC version 9.0.2.
What type of vulnerability is CVE-2019-7132?
CVE-2019-7132 is categorized as an out-of-bounds write vulnerability that could enable execution of arbitrary code.
Is user interaction required for the exploitation of CVE-2019-7132?
Yes, user interaction is required to successfully exploit CVE-2019-7132.