CVE-2020-9747

Severity CVSS v4.0:
Pending analysis
Type:
CWE-415 Double Free
Publication date:
21/10/2020
Last modified:
23/10/2020

Description

Adobe Animate version 20.5 (and earlier) is affected by a double free vulnerability when parsing a crafted .fla file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:adobe:animate:*:*:*:*:*:*:*:* 20.5 (including)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools