CVE-2021-42737: Adobe Prelude WAV File Parsing Memory Corruption Arbitrary Code Execution
Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required in that the victim must open a specially crafted file to exploit this vulnerability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-42737?
CVE-2021-42737 is a memory corruption vulnerability in Adobe Prelude version 10.1 (and earlier) caused by insecure handling of a malicious WAV file, potentially leading to arbitrary code execution in the context of the current user.
How does CVE-2021-42737 impact Adobe Prelude?
CVE-2021-42737 can result in arbitrary code execution in the context of the current user when a specially crafted WAV file is opened in Adobe Prelude version 10.1 (and earlier).
What is the severity of CVE-2021-42737?
CVE-2021-42737 has a severity rating of 7.8 (high).
How can I fix CVE-2021-42737?
To fix CVE-2021-42737, it is recommended to update Adobe Prelude to version 10.2 or later.
Where can I find more information about CVE-2021-42737?
More information about CVE-2021-42737 can be found on the Adobe security bulletin APSB21-96.