First published: Tue Oct 26 2021(Updated: )
Adobe Prelude version 10.1 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious M4A file.
Credit: psirt@adobe.com psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Prelude | <=10.1 | |
Microsoft Windows | ||
All of | ||
Adobe Prelude | <=10.1 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-43012.
Adobe Prelude version 10.1 (and earlier) is affected.
The severity of CVE-2021-43012 is critical with a score of 7.8.
An unauthenticated attacker could exploit this vulnerability to achieve arbitrary code execution in the context of the current user.
Yes, exploitation of this issue requires user interaction.