First published: Fri Mar 12 2021(Updated: )
Adobe Animate version 21.0.3 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Animate | <=21.0.3 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-21077 is a Heap-based Buffer Overflow vulnerability in Adobe Animate version 21.0.3 and earlier.
CVE-2021-21077 affects Adobe Animate version 21.0.3 and earlier by allowing an unauthenticated attacker to achieve arbitrary code execution in the context of the current user.
Yes, exploitation of CVE-2021-21077 requires user interaction.
To fix CVE-2021-21077, upgrade Adobe Animate to version 21.0.4 or later.
You can find more information about CVE-2021-21077 on the Adobe Security Bulletin APSB21-21.