First published: Fri Sep 18 2020(Updated: )
Adobe Media Encoder version 14.3.2 (and earlier versions) has an out-of-bounds read vulnerability that could be exploited to read past the end of an allocated buffer, possibly resulting in a crash or disclosure of sensitive information from other memory locations. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Media Encoder | <=14.3.2 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9744 refers to an out-of-bounds read vulnerability in Adobe Media Encoder version 14.3.2 and earlier versions.
CVE-2020-9744 has a severity rating of 7.1, which is considered high.
The affected software for CVE-2020-9744 is Adobe Media Encoder version 14.3.2 and earlier versions.
CVE-2020-9744 could be exploited to read past the end of an allocated buffer, potentially leading to a crash or disclosure of sensitive information from other memory locations.
To fix CVE-2020-9744, update Adobe Media Encoder to version 14.4 or later.