CVE-2021-40739: Adobe Audition Memory Corruption could lead to Arbitrary code execution
Published Mar 16, 2022
·Updated
Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a M4A file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
Affected Software
3 affected components
Adobe Audition<=14.4
macOS
Microsoft Windows
Event History
Mar 16, 2022
CVE Published
via MITRE·02:03 PM
Data Sourced
via MITRE·02:03 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-40739?
CVE-2021-40739 is a memory corruption vulnerability in Adobe Audition version 14.4 and earlier.
2
What is the severity of CVE-2021-40739?
The severity of CVE-2021-40739 is critical, with a severity value of 7.8.
3
How does CVE-2021-40739 affect Adobe Audition?
CVE-2021-40739 affects Adobe Audition version 14.4 and earlier by allowing arbitrary code execution in the context of the current user.
4
What is the required user interaction to exploit CVE-2021-40739?
User interaction is required to exploit CVE-2021-40739.
5
Where can I find more information about CVE-2021-40739?
You can find more information about CVE-2021-40739 at this link: https://helpx.adobe.com/security/products/audition/apsb21-92.html