CVE-2021-44743: Adobe Bridge JPEG2000 Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published Jan 14, 2022
·Updated
Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
4 affected components
Adobe Bridge<11.1.3
Adobe Bridge=12.0
macOS
Microsoft Windows
Event History
Jan 14, 2022
CVE Published
via MITRE·07:04 PM
Data Sourced
via MITRE·07:04 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Adobe Bridge vulnerability?
The vulnerability ID for this Adobe Bridge vulnerability is CVE-2021-44743.
2
What is the severity rating of CVE-2021-44743?
CVE-2021-44743 has a severity rating of 7.8 (Critical).
3
Which versions of Adobe Bridge are affected by this vulnerability?
Adobe Bridge version 11.1.2 (and earlier) and version 12.0 (and earlier) are affected by this vulnerability.
4
What is the impact of this vulnerability?
The vulnerability could result in arbitrary code execution in the context of the current user.
5
How can the vulnerability be exploited?
Exploitation of this vulnerability requires user interaction in that a victim must open a malicious file.