VDB

CVE-2021-42719

CVE-2021-42719 PUBLISHED CVSS 7.099999904632568 HIGH

Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .jpe file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

EPSS 3.69% · 88.1th percentile

Risk Scores

CVSS v3.0
7.099999904632568
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H
EPSS Score
3.69%
88.1th percentile

Affected Products

VendorProductVersions
adobebridge0
AdobeBridgeunspecified, *

Timeline

  • Mar 16, 2022 CVE Published
  • Mar 17, 2022 EPSS Score
  • May 7, 2022 EPSS Score
  • Aug 18, 2022 EPSS Score
  • Oct 8, 2022 EPSS Score
  • Nov 29, 2022 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 11, 2023 EPSS Score
  • May 1, 2023 EPSS Score
  • Aug 11, 2023 EPSS Score
  • Oct 1, 2023 EPSS Score
  • Nov 21, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›