Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
Adobe Photoshop gets fixes for critical security vulnerabilities
#1
Quote:Adobe has released security updates to address twelve critical vulnerabilities in Adobe Photoshop, Adobe Prelude, and Adobe Bridge that could allow attackers to execute arbitrary code on Windows devices.

In addition to the code execution vulnerabilities, a information disclosure bug was fixed in Adobe Reader Mobile for Android users.


The arbitrary code execution vulnerabilities are all 'Out-of-bounds write' and 'Out-of-bounds read' bugs in Windows versions that could allow arbitrary code execution in the security context of the logged in user.

For users who are running as a standard Windows users, and not an administrative account, the impact of these vulnerabilities are greatly restricted unless chained with another vulnerability that elevates privileges.

Adobe advises users to update the vulnerable apps to the latest versions to block attacks attempting to exploit unpatched installations.

APSB20-44 Security update available for Adobe Bridge

[Image: uoFADfu.png]

Adobe has released a security update for a critical vulnerability in Adobe Bridge that could allow remote code execution in the security context of the current user.

If a user is has standard privileges on the Windows machine, the risks will significantly be reduced.

Windows users should install Adobe Bridge 10.1.1 to fix this critical vulnerability.


APSB20-45 Security update available for Adobe Photoshop

[Image: gLGdK6T.png]

Adobe has published security updates for Photoshop CC 2019 and Photoshop CC that resolves Out-of-bounds read and writes that could lead to remote code execution.

If a user is has standard privileges on the Windows machine, the risks will significantly be reduced.

Users should install Photoshop CC 2019 20.0.10 or Photoshop CC 21.2.1 to fix these important severity flaws.

Continue reading HERE
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Vulnerabilities in WatchGuard, Panda Security Products Lead to Code Execution mrtrout 0 493 02-04-2024 , 06:49 AM
Last Post: mrtrout
  Google Uncovers 18 Severe Security Vulnerabilities in Samsung Exynos Chips mrtrout 0 416 03-19-2023 , 06:31 PM
Last Post: mrtrout
  Abode IoT Security Camera Vulnerabilities Bitdefender mrtrout 0 465 01-01-2022 , 06:59 AM
Last Post: mrtrout
  Critical Vulnerabilities Found in Custom TCP/IP Stack mrtrout 0 687 08-06-2021 , 03:37 AM
Last Post: mrtrout
  Google releases Chrome 90 with HTTPS by default and security fixes Imran 0 1,014 04-15-2021 , 03:00 PM
Last Post: Imran

Forum Jump:


Users browsing this thread: 1 Guest(s)