First published: Wed Mar 25 2020(Updated: )
Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Photoshop 2020 | >=21.0<=21.1 | |
Adobe Photoshop CC | >=20.0<=20.0.8 | |
Apple macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Adobe Photoshop vulnerability is CVE-2020-3784.
The severity of CVE-2020-3784 is critical with a CVSS score of 9.8.
Adobe Photoshop CC 2019 versions 20.0.8 and earlier, and Photoshop 2020 versions 21.1 and earlier are affected by CVE-2020-3784.
Successful exploitation of CVE-2020-3784 could lead to arbitrary code execution.
No, neither Apple macOS nor Microsoft Windows are affected by CVE-2020-3784.
To fix the CVE-2020-3784 vulnerability, update Adobe Photoshop CC 2019 to version 20.0.9 or later, and update Photoshop 2020 to version 21.1.1 or later.
You can find more information about CVE-2020-3784 on the Adobe Security Bulletin APSB20-14.
The Common Weakness Enumeration (CWE) ID for CVE-2020-3784 is CWE-787.