PT-2021-6166 · Adobe · Premiere Elements

Published

2021-10-26

·

Updated

2023-06-26

·

CVE-2021-40787

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Premiere Elements versions 20210809.daily.2242976 and earlier
Description The issue is related to a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
Recommendations For Adobe Premiere Elements versions 20210809.daily.2242976 and earlier, update to a version that fixes the memory corruption vulnerability to prevent arbitrary code execution. As a temporary workaround, consider avoiding the use of specially crafted files that could trigger the vulnerability.

Fix

Buffer Overflow

Access of Memory Location After End of Buffer

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-01082
CVE-2021-40787

Affected Products

Premiere Elements