First published: Fri Sep 18 2020(Updated: )
Adobe Media Encoder version 14.3.2 (and earlier versions) has an out-of-bounds read vulnerability that could be exploited to read past the end of an allocated buffer, possibly resulting in a crash or disclosure of sensitive information from other memory locations. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Media Encoder | <=14.3.2 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9739 is an out-of-bounds read vulnerability in Adobe Media Encoder version 14.3.2 and earlier versions.
The severity of CVE-2020-9739 is high with a CVSS score of 7.1.
CVE-2020-9739 affects Adobe Media Encoder version 14.3.2 and earlier versions, allowing an attacker to read past the end of an allocated buffer, potentially leading to a crash or disclosure of sensitive information.
No, Microsoft Windows is not affected by CVE-2020-9739.
To fix CVE-2020-9739, update your Adobe Media Encoder software to version 14.4 or later, as recommended by Adobe.