Memory Corruption Vulnerability in Adobe Premiere Rush 1.5.16 and Earlier: Arbitrary Code Execution via Malicious MXF File

Memory Corruption Vulnerability in Adobe Premiere Rush 1.5.16 and Earlier: Arbitrary Code Execution via Malicious MXF File

CVE-2021-43026 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious MXF file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.

Learn more about our User Device Pen Test.