CVE-2021-43749: Adobe Premiere Rush NULL Pointer Dereference Local Denial-of-Service
Published Dec 20, 2021
·Updated
Adobe Premiere Rush versions 1.5.16 (and earlier) are affected by a Null pointer dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
4 affected components
All of the following
Adobe Premiere Rush<=1.5.16
Microsoft Windows
Adobe Premiere Rush<=1.5.16
Microsoft Windows
Event History
Dec 20, 2021
CVE Published
via MITRE·08:08 PM
Data Sourced
via MITRE·08:08 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID is CVE-2021-43749.
2
Which versions of Adobe Premiere Rush are affected?
Adobe Premiere Rush versions 1.5.16 and earlier are affected.
3
What is the impact of this vulnerability?
An unauthenticated attacker could achieve an application denial-of-service in the context of the current user.
4
What is the severity rating of CVE-2021-43749?
The severity rating of CVE-2021-43749 is medium, with a severity value of 5.5.
5
How can the vulnerability be exploited?
Exploitation of this issue requires user interaction.