Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r2vp-qcg8-m2f6

Опубликовано: 17 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Adobe Bridge version 11.1.1 (and earlier) is affected by a double free vulnerability when parsing a crafted DCM file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.

Adobe Bridge version 11.1.1 (and earlier) is affected by a double free vulnerability when parsing a crafted DCM file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.

EPSS

Процентиль: 89%
0.04722
Низкий

7.8 High

CVSS3

Дефекты

CWE-415

Связанные уязвимости

CVSS3: 7.8
nvd
почти 4 года назад

Adobe Bridge version 11.1.1 (and earlier) is affected by a double free vulnerability when parsing a crafted DCM file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.

CVSS3: 7.8
fstec
больше 4 лет назад

Уязвимость файлового менеджера Adobe Bridge, связанная с повторным освобождением памяти, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 89%
0.04722
Низкий

7.8 High

CVSS3

Дефекты

CWE-415