PT-2026-32701 · Adobe · Indesign
Michele Spagnuolo
·
Published
2026-04-14
·
Updated
2026-04-19
·
CVE-2026-27285
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Adobe InDesign versions prior to 20.5.3
Adobe InDesign versions prior to 21.3
Description
A heap-based buffer overflow occurs in the dynamic memory of the application. This issue can be triggered when a user opens a malicious file, potentially allowing an attacker to cause a denial-of-service condition, resulting in an application crash or disruption of functionality.
Recommendations
Update to version 20.5.3 or later.
Update to version 21.3 or later.
Fix
DoS
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Indesign