CVE-2023-29314: [FG-VD-23-013] Adobe InDesign 2023 Out-of-Bound Read Vulnerability X Notification
Adobe InDesign versions ID18.3 (and earlier) and ID17.4.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-29314?
CVE-2023-29314 is an out-of-bounds read vulnerability in Adobe InDesign versions ID18.3 (and earlier) and ID17.4.1 (and earlier) that could lead to disclosure of sensitive memory.
How does CVE-2023-29314 affect Adobe InDesign?
CVE-2023-29314 affects Adobe InDesign versions ID18.3 (and earlier) and ID17.4.1 (and earlier).
What is the severity of CVE-2023-29314?
CVE-2023-29314 has a severity rating of medium with a score of 5.5.
How can an attacker exploit CVE-2023-29314?
An attacker can exploit CVE-2023-29314 to bypass mitigations such as ASLR and potentially disclose sensitive memory.
Is Apple iPadOS or Microsoft Windows vulnerable to CVE-2023-29314?
No, Apple iPadOS and Microsoft Windows are not vulnerable to CVE-2023-29314.