CVE-2021-28549 – Adobe Photoshop parsing JS buffer overflow vulnerability could lead to arbitrary code execution
https://notcve.org/view.php?id=CVE-2021-28549
Adobe Photoshop versions 21.2.6 (and earlier) and 22.3 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially crafted JSX file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Photoshop versiones 21.2.6 (y anteriores) y versiones 22.3 (y anteriores) están afectadas por una vulnerabilidad de desbordamiento de búfer cuando analiza un archivo JSX especialmente diseñado. Un atacante no autenticado podría aprovechar esta vulnerabilidad para lograr una ejecución de código arbitraria en el contexto del usuario actual. • https://helpx.adobe.com/security/products/photoshop/apsb21-28.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2021-21082 – Adobe Photoshop Memory Corruption
https://notcve.org/view.php?id=CVE-2021-21082
Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by a Memory Corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Photoshop versiones 21.2.5 (y anteriores) y 22.2 (y anteriores), están afectadas por una vulnerabilidad de Corrupción de la Memoria al analizar un archivo especialmente diseñado. Un atacante no autenticado podría aprovechar esta vulnerabilidad para lograr una ejecución de código arbitraria en el contexto del usuario actual. • https://helpx.adobe.com/security/products/photoshop/apsb21-17.html • CWE-787: Out-of-bounds Write CWE-788: Access of Memory Location After End of Buffer •
CVE-2021-21067 – Adobe Photoshop CoolType arbitrary stack manipulation in Type 1/Multiple Master
https://notcve.org/view.php?id=CVE-2021-21067
Adobe Photoshop versions 21.2.5 (and earlier) and 22.2 (and earlier) are affected by an Out-of-bounds Write vulnerability in the CoolType library. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Photoshop versiones 21.2.5 (y anteriores) y 22.2 (y anteriores), están afectadas por una vulnerabilidad de Escritura Fuera de Límites en la biblioteca CoolType. Un atacante no autenticado podría aprovechar esta vulnerabilidad para lograr una ejecución de código arbitraria en el contexto del usuario actual. • https://helpx.adobe.com/security/products/photoshop/apsb21-17.html • CWE-787: Out-of-bounds Write •
CVE-2021-21051 – Adobe Photoshop Buffer Overflow Vulnerability Could Lead To Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2021-21051
Adobe Photoshop versions 21.2.4 (and earlier) and 22.1.1 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially crafted javascript file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Photoshop versiones 21.2.4 (y anteriores) y versiones 22.1.1 (y anteriores), están afectadas por una vulnerabilidad de desbordamiento de búfer cuando analiza un archivo javascript especialmente diseñado. Un atacante no autenticado podría aprovechar esta vulnerabilidad para alcanzar una ejecución de código arbitraria en el contexto del usuario actual. • https://helpx.adobe.com/security/products/photoshop/apsb21-10.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2021-21047 – Adobe Photoshop Out-Of-Bounds Write Vulnerability Could Lead To Remote Code Execution
https://notcve.org/view.php?id=CVE-2021-21047
Adobe Photoshop versions 21.2.4 (and earlier) and 22.1.1 (and earlier) are affected by an Out-of-bounds Write vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Photoshop versiones 21.2.4 (y anteriores) y versiones 22.1.1 (y anteriores), están afectadas por una vulnerabilidad de escritura fuera de límites. Un atacante no autenticado podría aprovechar esta vulnerabilidad para alcanzar una ejecución de código arbitraria en el contexto del usuario actual. • https://helpx.adobe.com/security/products/photoshop/apsb21-10.html • CWE-787: Out-of-bounds Write •