Adobe Creative Cloud version 5.5 (and earlier) are affected by an Application denial of service vulnerability in the Creative Cloud Desktop installer. An authenticated attacker with root privileges could leverage this vulnerability to achieve denial of service by planting a malicious file on the victim's local machine. User interaction is required before product installation to abuse this vulnerability.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/creative-cloud/apsb21-111.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-11-18 11:15
Updated : 2022-02-02 05:05
NVD link : CVE-2021-43017
Mitre link : CVE-2021-43017
JSON object : View
CWE
CWE-379
Creation of Temporary File in Directory with Insecure Permissions
Products Affected
adobe
- creative_cloud_desktop_application
apple
- macos