PT-2021-4866 · Adobe · Audition

Published

2021-10-26

·

Updated

2023-06-26

·

CVE-2021-40738

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Audition versions 14.4 and earlier
Description The issue is related to a memory corruption vulnerability when parsing a WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
Recommendations For Adobe Audition versions 14.4 and earlier, update to a version that fixes the memory corruption vulnerability to prevent arbitrary code execution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Access of Memory Location After End of Buffer

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2021-05594
CVE-2021-40738

Affected Products

Audition