CVE-2021-42726: Adobe Bridge Memory Corruption could lead to Arbitrary code execution
Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious M4A file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Adobe Bridge vulnerability?
The vulnerability ID for this Adobe Bridge vulnerability is CVE-2021-42726.
What is the severity of CVE-2021-42726?
The severity of CVE-2021-42726 is critical with a CVSS score of 7.8.
What is affected by CVE-2021-42726?
Adobe Bridge version 11.1.1 (and earlier) is affected by CVE-2021-42726.
How does CVE-2021-42726 exploit the vulnerability?
CVE-2021-42726 exploits the vulnerability through insecure handling of a malicious M4A file, potentially resulting in arbitrary code execution in the context of the current user.
How can I fix the CVE-2021-42726 vulnerability?
To fix the CVE-2021-42726 vulnerability, it is recommended to update to a patched version of Adobe Bridge (version 11.1.2 or later) provided by Adobe.