Description
Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by a NULL Pointer Dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-48701 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by a NULL Pointer Dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
References
History
Mon, 02 Dec 2024 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe indesign Apple Apple macos Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Adobe
Adobe indesign Apple Apple macos Microsoft Microsoft windows |
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2024-08-02T20:07:32.146Z
Reserved: 2023-09-28T16:25:40.450Z
Link: CVE-2023-44347
Updated: 2024-08-02T20:07:32.146Z
Status : Analyzed
Published: 2024-02-29T01:41:14.037
Modified: 2024-12-02T22:12:28.940
Link: CVE-2023-44347
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD