PT-2026-32701 · Adobe · Indesign

Michele Spagnuolo

·

Published

2026-04-14

·

Updated

2026-04-19

·

CVE-2026-27285

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Adobe InDesign versions prior to 20.5.3 Adobe InDesign versions prior to 21.3
Description A heap-based buffer overflow occurs in the dynamic memory of the application. This issue can be triggered when a user opens a malicious file, potentially allowing an attacker to cause a denial-of-service condition, resulting in an application crash or disruption of functionality.
Recommendations Update to version 20.5.3 or later. Update to version 21.3 or later.

Fix

DoS

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-05396
CVE-2026-27285

Affected Products

Indesign