CVE-2026-27301: Adobe Framemaker | Heap-based Buffer Overflow (CWE-122)
Adobe Framemaker versions 2022.8 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-27301?
The severity of CVE-2026-27301 is classified as critical due to its potential to allow sensitive information disclosure.
How do I fix CVE-2026-27301?
To fix CVE-2026-27301, update Adobe FrameMaker to version 2022.9 or later.
What versions of Adobe FrameMaker are affected by CVE-2026-27301?
Adobe FrameMaker versions 2022.8 and earlier are affected by CVE-2026-27301.
What is a heap-based buffer overflow in the context of CVE-2026-27301?
A heap-based buffer overflow occurs when a program writes more data to a buffer located on the heap than it can hold, potentially leading to memory corruption and data exposure.
Can CVE-2026-27301 be exploited remotely?
Yes, an attacker could potentially exploit CVE-2026-27301 remotely to access sensitive information in memory.