First published: Tue Dec 14 2021(Updated: )
Adobe Audition versions 14.4 (and earlier), and 22.0 (and earlier)are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious MP4 file.
Credit: psirt@adobe.com psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Audition | <14.4.3 | |
Adobe Audition | =22.0 | |
Apple macOS | ||
Microsoft Windows | ||
Adobe Audition | ||
All of | ||
Any of | ||
Adobe Audition | <14.4.3 | |
Adobe Audition | =22.0 | |
Any of | ||
Apple macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Adobe Audition vulnerability is CVE-2021-44698.
The severity level of CVE-2021-44698 is medium (3.3).
This vulnerability affects Adobe Audition versions up to 14.4.3 and exactly version 22.0.
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Adobe Audition.
To exploit this vulnerability, user interaction is required, such as visiting a malicious page or opening a malicious file.