Adobe FrameMaker Stack-Based Buffer Overflow Vulnerability Allowing Memory Disclosure

Vulnerability

A stack-based buffer overflow vulnerability has been identified in Adobe FrameMaker versions 2020.8, 2022.6 and earlier. This vulnerability could lead to the disclosure of sensitive memory. Exploitation requires user interaction, as a victim must open a malicious file.

Impact

Exploitation of this vulnerability could result in a memory leak, allowing sensitive information to be disclosed.

Remediation

Users are advised to update to Adobe FrameMaker 2020 Update 9 or Adobe FrameMaker 2022 Update 7. Instructions for downloading these updates are available in the respective tech notes.

Added: Jul 8, 2025, 11:58 PM
Updated: Jul 8, 2025, 11:58 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.