CVE-2020-24421

Adobe InDesign version 15.1.2 (and earlier) is affected by a NULL pointer dereference bug that occurs when handling a malformed .indd file. The impact is limited to causing a denial-of-service of the client application. User interaction is required to exploit this issue.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

18 May 2021, 13:13

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CVSS v2 : 4.3
v3 : 7.8
v2 : 4.3
v3 : 5.5

Information

Published : 2020-10-21 22:15

Updated : 2023-12-10 13:41


NVD link : CVE-2020-24421

Mitre link : CVE-2020-24421

CVE.ORG link : CVE-2020-24421


JSON object : View

Products Affected

microsoft

  • windows

adobe

  • indesign
CWE
CWE-476

NULL Pointer Dereference