Use After Free Vulnerability in Adobe Bridge Software
CVE-2020-9567

7.8HIGH

Key Information:

Vendor
Adobe
Vendor
CVE Published:
26 June 2020

Summary

Adobe Bridge, a digital asset management software, is susceptible to an use after free vulnerability. In versions 10.0.1 and earlier, this flaw can be exploited to execute arbitrary code. Attackers leveraging this vulnerability could potentially manipulate the software's memory management, leading to unauthorized actions and significant security risks. Users are advised to update to the latest version to mitigate these threats.

Affected Version(s)

Adobe Bridge 10.0.1 and earlier version versions

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.