Skip to main content

Adobe Products BMP Handling Buffer Overflow Vulnerability

Last Update Date: 28 Jan 2011 Release Date: 23 Apr 2008 4382 Views

RISK: Medium Risk

A vulnerability has been identified in multiple Adobe products, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. This issue is caused by a buffer overflow error when parsing malformed BMP images, which could be exploited by attackers to crash an affected application or execute arbitrary code by tricking a user into opening a specially crafted file.


Impact

  • Remote Code Execution

System / Technologies affected

  • Adobe After Effects CS3
  • Adobe Photoshop Album Starter Edition 3.x

Solutions

There is no patch available for this vulnerability currently.

Temporary Solution:

  • Do not process untrusted BMP files using the affected applications.
  • Do not connect untrusted storage devices to the local computer.


Vulnerability Identifier


Source


Related Link