Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious M4A file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/bridge/apsb21-94.html | Patch Vendor Advisory |
Configurations
History
26 Jun 2023, 19:06
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-119 |
Information
Published : 2021-11-16 22:15
Updated : 2023-06-26 19:06
NVD link : CVE-2021-42725
Mitre link : CVE-2021-42725
JSON object : View
Products Affected
adobe
- bridge
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer