CVE-2020-3731Out-of-bounds Write in Adobe Framemaker

Severity
8.8HIGHNVD
EPSS
37.1%
top 2.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 13
Latest updateMay 24

Description

Adobe Framemaker versions 2019.0.4 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

NVDadobe/framemaker2019.0.4
CVEListV5adobe/adobe_framemaker2019.0.4 and below versions

Patches

🔴Vulnerability Details

2
GHSA
GHSA-ppcq-248q-f293: Adobe Framemaker versions 20192022-05-24
CVEList
CVE-2020-3731: Adobe Framemaker versions 20192020-02-13

💬Community

1
Bugzilla
CVE-2020-14384 jbossweb: Incomplete fix of CVE-2020-13935 for WebSocket in JBossWeb could lead to DoS2020-09-02
CVE-2020-3731 — Out-of-bounds Write in Adobe Framemaker | cvebase