CVE-2021-43017
Adobe Creative Cloud DLL Hijacking Local Application Denial of Service
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Adobe Creative Cloud version 5.5 (and earlier) are affected by an Application denial of service vulnerability in the Creative Cloud Desktop installer. An authenticated attacker with root privileges could leverage this vulnerability to achieve denial of service by planting a malicious file on the victim's local machine. User interaction is required before product installation to abuse this vulnerability.
Adobe Creative Cloud versión 5.5 (y las anteriores) están afectadas por una vulnerabilidad de denegación de servicio en el instalador de Creative Cloud Desktop. Un atacante autenticado con privilegios de root podría aprovechar esta vulnerabilidad para lograr la denegación de servicio plantando un archivo malicioso en la máquina local de la víctima. Se requiere la interacción del usuario antes de la instalación del producto para abusar de esta vulnerabilidad
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-10-25 CVE Reserved
- 2021-11-18 CVE Published
- 2024-09-16 CVE Updated
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-379: Creation of Temporary File in Directory with Insecure Permissions
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://helpx.adobe.com/security/products/creative-cloud/apsb21-111.html | 2022-02-02 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Creative Cloud Desktop Application Search vendor "Adobe" for product "Creative Cloud Desktop Application" | <= 5.5 Search vendor "Adobe" for product "Creative Cloud Desktop Application" and version " <= 5.5" | - |
Affected
| in | Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | - | - |
Safe
|