CVE-2021-45056: Adobe InCopy JPEG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
Published Jan 13, 2022
·Updated
Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
3 affected components
Adobe InCopy<=16.4
macOS
Microsoft Windows
Event History
Jan 13, 2022
CVE Published
via MITRE·08:27 PM
Data Sourced
via MITRE·08:27 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Adobe InCopy vulnerability?
The vulnerability ID for this Adobe InCopy vulnerability is CVE-2021-45056.
2
Which versions of Adobe InCopy are affected by this vulnerability?
Adobe InCopy version 16.4 (and earlier) is affected by this vulnerability.
3
What is the severity rating of CVE-2021-45056?
The severity rating of CVE-2021-45056 is 7.8 (High).
4
How can this vulnerability be exploited?
Exploitation of this vulnerability requires user interaction in that a victim must open a malicious file.
5
Is Microsoft Windows affected by this vulnerability?
No, Microsoft Windows is not affected by this vulnerability.