CVE Published: 07/09/2023 |
CVE Updated: 04/08/2024 |
CVE Year: 2021 Source: adobe |
Vendor: Adobe |
Product: After Effects Status : PUBLISHED
CVE-2021-44189 Description
Adobe After Effects versions 22.0 (and earlier) and 18.4.2 (and earlier) are affected by an Use-After-Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Metrics
CVSS Version: 3.1 |
Base Score: 3.3 LOW Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N