CVE-2022-35708
published 2022-09-19CVE-2022-35708: Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary…
high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | bridge | >= 11.1 < 11.1.4 | 11.1.4 |
| adobe | bridge | >= 12.0 < 12.0.3 | 12.0.3 |
| adobe | bridge | unspecified – 11.1.3 | — |