CVE-2021-43755: Adobe After Effects Memory Corruption could lead to Arbitrary Code Execution
Adobe After Effects versions 22.0 (and earlier) and 18.4.2 (and earlier) are affected by an Out-of-bounds Write vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-43755.
Which versions of Adobe After Effects are affected?
Adobe After Effects versions 22.0 (and earlier) and 18.4.2 (and earlier) are affected.
What is the severity of CVE-2021-43755?
The severity of CVE-2021-43755 is high with a CVSS score of 7.8.
What is the impact of this vulnerability?
This vulnerability can potentially result in arbitrary code execution in the context of the current user.
Is user interaction required to exploit CVE-2021-43755?
Yes, user interaction is required to exploit this vulnerability.
How can I fix CVE-2021-43755?
To fix CVE-2021-43755, update Adobe After Effects to version 22.1.1 or later.