CVE-2021-40755

Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SGI file in the DoReadContinue function, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:after_effects:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-11-18 17:15

Updated : 2024-02-28 18:48


NVD link : CVE-2021-40755

Mitre link : CVE-2021-40755

CVE.ORG link : CVE-2021-40755


JSON object : View

Products Affected

adobe

  • after_effects

microsoft

  • windows
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-788

Access of Memory Location After End of Buffer