First published: Tue May 13 2025(Updated: )
Bridge versions 15.0.3, 14.1.6 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Bridge Bridge | <15.0.3 | |
All of | ||
Any of | ||
Adobe Bridge CC | >=14.0.0<14.1.7 | |
Adobe Bridge CC | >=15.0<15.0.4 | |
Any of | ||
macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-43545 is considered a critical vulnerability due to its potential for arbitrary code execution.
To mitigate CVE-2025-43545, users should upgrade to Bridge version 15.0.4 or later.
CVE-2025-43545 affects users of Bridge versions 15.0.3, 14.1.6, and earlier.
CVE-2025-43545 is caused by an Access of Uninitialized Pointer vulnerability.
Exploitation of CVE-2025-43545 requires the victim to open a malicious file.