CVE-2021-40741: Adobe Audition Memory Corruption could lead to Application denial-of-service
Adobe Audition version 14.4 (and earlier) is affected by an Access of Memory Location After End of Buffer vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-40741?
CVE-2021-40741 is a vulnerability in Adobe Audition version 14.4 (and earlier) that allows an attacker to achieve an application denial-of-service by exploiting a memory access issue.
How does CVE-2021-40741 impact Adobe Audition?
CVE-2021-40741 can cause Adobe Audition to become unresponsive or crash, leading to a denial-of-service condition.
How can an attacker exploit CVE-2021-40741?
An attacker can exploit CVE-2021-40741 by providing a specially crafted file to Adobe Audition, triggering the memory access issue and causing the application to crash.
Is my version of Adobe Audition affected by CVE-2021-40741?
If you are using Adobe Audition version 14.4 or earlier, your system is affected by CVE-2021-40741.
How can I mitigate CVE-2021-40741?
To mitigate CVE-2021-40741, update Adobe Audition to the latest version available, as the vulnerability has been addressed in later versions.