First published: Wed Jun 15 2022(Updated: )
Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Bridge | <=12.0.1 | |
Apple macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-28849 is a Use-After-Free vulnerability in Adobe Bridge version 12.0.1 and earlier versions, which could allow arbitrary code execution.
CVE-2022-28849 affects Adobe Bridge version 12.0.1 and earlier versions by allowing arbitrary code execution in the context of the current user.
Adobe Bridge versions up to and including 12.0.1 are affected by CVE-2022-28849.
No, Apple macOS is not vulnerable to CVE-2022-28849.
No, Microsoft Windows is not vulnerable to CVE-2022-28849.