Adobe InCopy Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
CVE-2022-28834
7.8HIGH
What is CVE-2022-28834?
Adobe InCopy has a vulnerability that enables out-of-bounds write conditions, allowing attackers to execute arbitrary code with the privileges of the current user. To trigger this vulnerability, a user must open a specially crafted malicious file. This emphasizes the importance of cautious file handling practices by users to mitigate the risk of exploitation.
Affected Version(s)
InCopy 0 <= 17.1