CVE-2026-21317: Audition | Out-of-bounds Read (CWE-125)
Audition versions 25.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Auditionto a version that resolves this vulnerability.Fixed in 25.3 - Compensating control
Prevent users from opening untrusted/malicious files (exploitation requires user interaction by opening a malicious file).
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21317?
CVE-2026-21317 is classified as a high severity vulnerability due to its potential for memory exposure.
How do I fix CVE-2026-21317?
To fix CVE-2026-21317, upgrade Adobe Audition to version 25.6 or later.
What versions of Adobe Audition are affected by CVE-2026-21317?
Adobe Audition versions 25.3 and earlier are affected by CVE-2026-21317.
What type of vulnerability is CVE-2026-21317?
CVE-2026-21317 is an out-of-bounds read vulnerability classified under CWE-125.
What could an attacker achieve by exploiting CVE-2026-21317?
An attacker could exploit CVE-2026-21317 to disclose sensitive information stored in memory.