InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial of service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
2024-12-10T21:15:20.307
2024-12-18T15:07:51.167
Analyzed
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | adobe | indesign | ≤ 18.5.4 | Yes |
Application | adobe | indesign | ≤ 19.5 | Yes |
Operating System | apple | macos | - | No |
Operating System | microsoft | windows | - | No |