First published: Tue Oct 26 2021(Updated: )
Adobe Premiere Pro 15.4.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Premiere Pro CS4 | <15.4.2 | |
Apple iOS and macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42263 is a vulnerability in Adobe Premiere Pro 15.4.1 and earlier versions that allows an attacker to cause a denial-of-service attack by exploiting a null pointer dereference vulnerability.
The severity of CVE-2021-42263 is medium, with a severity value of 5.5.
CVE-2021-42263 affects Adobe Premiere Pro 15.4.1 and earlier versions, allowing an attacker to exploit a null pointer dereference vulnerability and cause a denial-of-service attack.
The affected software versions for CVE-2021-42263 are Adobe Premiere Pro up to and excluding version 15.4.2.
To fix CVE-2021-42263, it is recommended to update Adobe Premiere Pro to version 15.4.2 or later.