CVE-2021-43016: Adobe InCopy NULL Pointer Dereference Application Denial of Service
Adobe InCopy version 16.4 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this Adobe InCopy vulnerability?
The vulnerability ID for this Adobe InCopy vulnerability is CVE-2021-43016.
What is the severity rating of CVE-2021-43016?
The severity rating of CVE-2021-43016 is medium.
What is the affected software of CVE-2021-43016?
The affected software of CVE-2021-43016 is Adobe InCopy version 16.4 (and earlier).
What is the risk of CVE-2021-43016?
CVE-2021-43016 poses a risk of application denial-of-service in the context of the current user.
How can an attacker exploit CVE-2021-43016?
An unauthenticated attacker could exploit CVE-2021-43016 by leveraging the null pointer dereference vulnerability when parsing a specially crafted file.