CVE-2023-29321: Adobe Animate FLA files Use After Free Arbitrary code execution
Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-29321?
CVE-2023-29321 is a vulnerability in Adobe Animate versions 22.0.9 and earlier, as well as version 23.0.1 and earlier. It is a Use After Free vulnerability that could allow arbitrary code execution.
How does CVE-2023-29321 affect Adobe Animate?
CVE-2023-29321 affects Adobe Animate versions 22.0.9 and earlier, as well as version 23.0.1 and earlier. It is a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user.
How can CVE-2023-29321 be exploited?
Exploitation of CVE-2023-29321 requires user interaction, as a victim must open a malicious file.
What is the severity of CVE-2023-29321?
CVE-2023-29321 has a severity rating of 7.8, indicating a high severity level.
How can I mitigate CVE-2023-29321?
To mitigate CVE-2023-29321, update Adobe Animate to version 23.0.2 or later.