Adobe FrameMaker version 2019.0.6 (and earlier versions) has an out-of-bounds read vulnerability that could be exploited to read past the end of an allocated buffer, possibly resulting in a crash or disclosure of sensitive information from other memory locations. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious FrameMaker file.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://helpx.adobe.com/security/products/framemaker/apsb20-54.html | patch vendor advisory |