CVE-2020-9745
Adobe Media Encoder PSD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Adobe Media Encoder version 14.3.2 (and earlier versions) has an out-of-bounds read vulnerability that could be exploited to read past the end of an allocated buffer, possibly resulting in a crash or disclosure of sensitive information from other memory locations. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Adobe Media Encoder versión 14.3.2 (y versiones anteriores), se presenta una vulnerabilidad de lectura fuera de límites que podría ser explotada para leer más allá del final de un búfer asignado, resultando posiblemente en un bloqueo o una divulgación de información confidencial de otras ubicaciones de memoria. Es requerida una interacción del usuario para explotar está vulnerabilidad en que el objetivo debe visitar una página maliciosa o abrir un archivo malicioso
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-03-02 CVE Reserved
- 2020-09-18 CVE Published
- 2024-05-15 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-125: Out-of-bounds Read
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://helpx.adobe.com/security/products/media-encoder/apsb20-57.html | 2020-09-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Media Encoder Search vendor "Adobe" for product "Media Encoder" | <= 14.3.2 Search vendor "Adobe" for product "Media Encoder" and version " <= 14.3.2" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|