漏洞标题
Adobe Animate BMP文件解析越界写入远程代码执行漏洞
漏洞描述信息
Adobe Animate BMP文件解析边界外写入远程代码执行漏洞
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
漏洞类别
N/A
漏洞标题
Adobe Animate BMP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
漏洞描述信息
Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Write vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS信息
N/A
漏洞类别
跨界内存写
漏洞标题
Animate CC 缓冲区错误漏洞
漏洞描述信息
Adobe Animate是美国奥多比(Adobe)公司的一套Flash动画制作软件。 Animate CC 存在缓冲区错误漏洞,该漏洞源于程序存在于一个边界错误,远程攻击者可利用该漏洞创建一个专门制作的文件,诱骗受害者打开它,触发越界写入错误,并危及受影响的系统。 以下产品和版本受到影响: Animate CC 20.0, 20.5, 21.0, 21.0.2, 21.0.3, 21.0.4, 21.0.5, 21.0.6。
CVSS信息
N/A
漏洞类别
缓冲区错误