CVE-2020-9726: FrameMaker File Parsing Out-Of-Bounds Read Vulnerability
Adobe FrameMaker version 2019.0.6 (and earlier versions) has an out-of-bounds read vulnerability that could be exploited to read past the end of an allocated buffer, possibly resulting in a crash or disclosure of sensitive information from other memory locations. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious FrameMaker file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-9726?
CVE-2020-9726 is an out-of-bounds read vulnerability in Adobe FrameMaker version 2019.0.6 (and earlier versions).
How does CVE-2020-9726 affect Adobe FrameMaker?
CVE-2020-9726 could be exploited to read past the end of an allocated buffer in Adobe FrameMaker, potentially leading to a crash or disclosure of sensitive information.
What is the severity of CVE-2020-9726?
The severity of CVE-2020-9726 is medium, with a CVSS score of 6.1.
What is the affected software of CVE-2020-9726?
The affected software of CVE-2020-9726 is Adobe FrameMaker version 2019.0.6 and earlier.
How can I mitigate CVE-2020-9726?
To mitigate CVE-2020-9726, update Adobe FrameMaker to a version that is not affected by the vulnerability.