CVE-2021-40738: Adobe Audition WAV file Memory corruption could lead to Arbitrary code execution
Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-40738?
CVE-2021-40738 is a memory corruption vulnerability in Adobe Audition version 14.4 and earlier.
How does CVE-2021-40738 affect Adobe Audition?
CVE-2021-40738 can potentially result in arbitrary code execution in the context of the current user when parsing a WAV file in Adobe Audition.
What is the severity of CVE-2021-40738?
CVE-2021-40738 has a severity rating of 7.8 (Critical).
Is Apple macOS affected by CVE-2021-40738?
No, Apple macOS is not vulnerable to CVE-2021-40738.
Is Microsoft Windows affected by CVE-2021-40738?
No, Microsoft Windows is not vulnerable to CVE-2021-40738.
How can I exploit CVE-2021-40738?
Exploiting CVE-2021-40738 requires user interaction to parse a malicious WAV file in Adobe Audition.
How can I fix CVE-2021-40738?
To fix CVE-2021-40738, update Adobe Audition to version 14.4.1 or later.