Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/bridge/apsb21-23.html | Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-21-416/ | Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: adobe
Published: 2021-04-13T00:00:00
Updated: 2021-04-16T04:06:20
Reserved: 2020-12-18T00:00:00
Link: CVE-2021-21094
JSON object: View
NVD Information
Status : Modified
Published: 2021-04-15T14:15:16.483
Modified: 2023-11-07T03:29:30.337
Link: CVE-2021-21094
JSON object: View
Redhat Information
No data.
CWE