vulnerability

Adobe FrameMaker: CVE-2022-35673: Out-of-bounds Read (CWE-125)

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Aug 11, 2022
Added
Feb 20, 2025
Modified
Feb 20, 2025

Description

Adobe FrameMaker versions 2019 Update 8 (and earlier) and 2020 Update 4 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Solution

adobe-framemaker-fix-for-multiple-vulnerabilities-august-2022
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.