First published: Fri Aug 20 2021(Updated: )
Adobe Prelude version 10.0 (and earlier) are affected by an uninitialized variable vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Prelude | <=10.0 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Adobe Prelude vulnerability is CVE-2021-36007.
The affected software for this vulnerability is Adobe Prelude version 10.0 (and earlier).
The severity of CVE-2021-36007 is medium with a severity value of 3.3.
An unauthenticated attacker can exploit this vulnerability to disclose arbitrary memory information in the context of the current user.
You can find more information about this vulnerability in the Adobe Security Bulletin APSB21-58.