CVE-2021-43017

Description

Adobe Creative Cloud version 5.5 (and earlier) are affected by an Application denial of service vulnerability in the Creative Cloud Desktop installer. An authenticated attacker with root privileges could leverage this vulnerability to achieve denial of service by planting a malicious file on the victims local machine. User interaction is required before product installation to abuse this vulnerability.

Risk Information

Base Score
4.2
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.323

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2021-43017,CVE-2021-43019,CVE-2022-23202 are affected in Adobe Creative Cloud (x64) 2.7.0.13Windows
Vulnerabilities CVE-2021-43017,CVE-2021-43019,CVE-2022-23202 are affected in Adobe Creative Cloud 2.7.0.13Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234