CVE-2022-35704: Adobe Bridge SVG File Parsing Use-After-Free Remote Code Execution Vulnerability
Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-35704?
CVE-2022-35704 is a Use After Free vulnerability in Adobe Bridge that could lead to arbitrary code execution.
What is the severity of CVE-2022-35704?
The severity of CVE-2022-35704 is high, with a severity value of 7.8.
Which versions of Adobe Bridge are affected by CVE-2022-35704?
Adobe Bridge versions 12.0.2 and earlier, as well as 11.1.3 and earlier, are affected by CVE-2022-35704.
How can CVE-2022-35704 be exploited?
Exploitation of CVE-2022-35704 requires user interaction, where a victim needs to open a malicious file.
Where can I find more information about CVE-2022-35704?
More information about CVE-2022-35704 can be found at the following link: [Adobe Security Bulletin APSB22-49](https://helpx.adobe.com/security/products/bridge/apsb22-49.html).