First published: Fri Aug 20 2021(Updated: )
Adobe Bridge version 11.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Bridge CC | <=11.0.2 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-35989 has been rated as critical due to its potential for arbitrary code execution.
To mitigate CVE-2021-35989, upgrade Adobe Bridge to version 11.0.3 or later.
CVE-2021-35989 is an Out-of-bounds Write vulnerability affecting Adobe Bridge.
CVE-2021-35989 can be exploited by unauthenticated attackers.
Successful exploitation of CVE-2021-35989 could allow attackers to execute arbitrary code in the context of the current user.