Adobe InDesign
cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*
- <= ID19.5.3
- ID20.2
A use-after-free vulnerability has been identified in Adobe InDesign Desktop versions ID20.2 and ID19.5.3 and earlier. This vulnerability could lead to the disclosure of sensitive memory. An attacker could exploit this issue to bypass Address Space Layout Randomization (ASLR) mitigations. Exploitation requires user interaction, as the victim must open a malicious file.
Exploitation of this vulnerability could result in the unauthorized disclosure of sensitive memory, potentially allowing an attacker to access confidential information or manipulate program behavior.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.