OSV 1.4.0 · unreviewed · 修改于 2022-01-16 08:00
发布时间
2022-01-14 08:01
GitHub 审查时间
—
NVD 发布时间
2022-01-14 05:15
源文件
advisories/unreviewed/2022/01/GHSA-pc6m-5m68-4xr8/GHSA-pc6m-5m68-4xr8.json
Adobe InDesign version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 file that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
该公告没有提供结构化的受影响软件包信息。