First published: Tue Oct 26 2021(Updated: )
Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted SGI file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Adobe Premiere Pro 2024 | <=15.4 | |
Microsoft Windows Operating System | ||
Adobe Premiere Pro 2024 | <=15.4 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42723 is an out-of-bounds read vulnerability in Adobe Bridge version 11.1.1 and earlier.
CVE-2021-42723 has a severity rating of 7.8 (critical).
CVE-2021-42723 affects Adobe Bridge version 11.1.1 and earlier by allowing an attacker to execute code in the context of the current user.
An attacker can exploit CVE-2021-42723 by leveraging the out-of-bounds read vulnerability when parsing a crafted SGI file.
No, Microsoft Windows is not affected by CVE-2021-42723.