CVE-2021-40780: Adobe Media Encoder MXF file memory corruption vulnerability could lead to arbitrary code execution
Published Mar 16, 2022
·Updated
Adobe Media Encoder version 15.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
Affected Software
3 affected components
Adobe Media Encoder<=15.4.1
macOS
Microsoft Windows
Event History
Mar 16, 2022
CVE Published
via MITRE·02:02 PM
Data Sourced
via MITRE·02:02 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-40780.
2
What is the severity rating of CVE-2021-40780?
The severity rating of CVE-2021-40780 is critical.
3
What is the affected software for CVE-2021-40780?
The affected software for CVE-2021-40780 is Adobe Media Encoder version 15.4.1 (and earlier).
4
How can this vulnerability be exploited?
This vulnerability can be exploited by insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user.
5
Is user interaction required to exploit CVE-2021-40780?
Yes, user interaction is required to exploit CVE-2021-40780.