CVE-2022-23191 – Adobe Illustrator Out-of-bounds Read could lead to Memory leak
https://notcve.org/view.php?id=CVE-2022-23191
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Illustrator versiones 25.4.3 (y anteriores) y 26.0.2 (y anteriores), están afectadas por una vulnerabilidad de lectura fuera de límites que podría conllevar a una divulgación de memoria confidencial. Un atacante podría aprovechar esta vulnerabilidad para omitir mitigaciones como ASLR. • https://helpx.adobe.com/security/products/illustrator/apsb22-07.html • CWE-125: Out-of-bounds Read •
CVE-2022-23186 – Adobe Illustrator Out-of-bounds Write could lead to Arbitrary code execution
https://notcve.org/view.php?id=CVE-2022-23186
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Illustrator versiones 25.4.3 (y anteriores) y 26.0.2 (y anteriores), están afectadas por una vulnerabilidad de escritura fuera de límites que podría resultar en una ejecución de código arbitrario en el contexto del usuario actual. Es requerida una interacción del usuario para explotar este problema, ya que la víctima debe abrir un archivo malicioso • https://helpx.adobe.com/security/products/illustrator/apsb22-07.html • CWE-787: Out-of-bounds Write •
CVE-2022-23189 – Adobe Illustrator NULL Pointer Dereference Application denial-of-service
https://notcve.org/view.php?id=CVE-2022-23189
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by a Null pointer dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Illustrator versiones 25.4.3 (y anteriores) y 26.0.2 (y anteriores), están afectadas por una vulnerabilidad de desreferencia de puntero Null. Un atacante no autenticado podría aprovechar esta vulnerabilidad para conseguir una denegación de servicio de la aplicación en el contexto del usuario actual. • https://helpx.adobe.com/security/products/illustrator/apsb22-07.html • CWE-476: NULL Pointer Dereference •
CVE-2022-23188 – Adobe Illustrator Buffer Overflow could lead to Arbitrary code execution
https://notcve.org/view.php?id=CVE-2022-23188
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by a buffer overflow vulnerability due to insecure handling of a crafted malicious file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted malicious file in Illustrator. Adobe Illustrator versiones 25.4.3 (y anteriores) y 26.0.2 (y anteriores), están afectadas por una vulnerabilidad de desbordamiento del búfer debido a un manejo no seguro de un archivo malicioso diseñado, resultando potencialmente en una ejecución de código arbitrario en el contexto del usuario actual. Es requerida una interacción del usuario para explotar este problema, ya que la víctima debe abrir un archivo malicioso diseñado en Illustrator • https://helpx.adobe.com/security/products/illustrator/apsb22-07.html • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2022-23192 – Adobe Illustrator Out-of-bounds Read could lead to Memory leak
https://notcve.org/view.php?id=CVE-2022-23192
Adobe Illustrator versions 25.4.3 (and earlier) and 26.0.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Adobe Illustrator versiones 25.4.3 (y anteriores) y 26.0.2 (y anteriores), están afectadas por una vulnerabilidad de lectura fuera de límites que podría conllevar a una divulgación de memoria confidencial. Un atacante podría aprovechar esta vulnerabilidad para omitir mitigaciones como ASLR. • https://helpx.adobe.com/security/products/illustrator/apsb22-07.html • CWE-125: Out-of-bounds Read •