Adobe Update Vulnerability

In today’s SensCy Cyber Brief, your SensCy team reviewed Adobe latest release of security updates. We recommend installing those updates immediately if you are using Adobe products.

In a bulletin released Tuesday July 9, 2024, Adobe issued a new update addressing multiple critical severity. Most of these vulnerabilities could lead to code executions attacks on Windows and mac OS platforms.

Impacted products include:

  • Adobe Premiere Pro (CVE-2024-34123) — Affected Versions: 4.1 and earlier, 23.6.5 and earlier (Windows and macOS). Untrusted search path; CVSS 7.0/10.
  • Adobe InDesign (CVE-2024-20781, CVE-2024-20782, CVE-2024-20783, CVE-2024-20785) — Affected Versions: ID19.3 and earlier, ID18.5.2 and earlier (Windows and macOS). Memory safety issues (CVSS 7.8/10).
  • Adobe Bridge (CVE-2024-34139, CVE-2024-34140). Affected Versions:** 0.7 and earlier, 14.1 and earlier (Windows and macOS). Integer overflow, out-of-band read (CVSS 7.8).

Here is some information about how to update Acrobat on Windows and macOS.

How to check for new updates:

SensCy highly recommends turning on the Automatic Update on Adobe products.