Adobe Photoshop versions 21.2.9 (and earlier) and 22.4.2 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted PSD file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted PSD file in Photoshop.
2021-08-20T19:15:10.580
2024-11-21T06:12:56.060
Modified
CVSSv3.1: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | adobe | photoshop | ≤ 21.2.9 | Yes |
Application | adobe | photoshop | ≤ 22.4.2 | Yes |
Operating System | apple | macos | - | No |
Operating System | microsoft | windows | - | No |