
====================================================================

                             CERT-Renater

                 Note d'Information No. 2021/VULN013
_____________________________________________________________________

DATE                : 12/01/2021

HARDWARE PLATFORM(S): /

OPERATING SYSTEM(S): Windows, macOS running Adobe Bridge versions prior
                                        to 11.0.1.

=====================================================================
https://helpx.adobe.com/security/products/bridge/apsb21-07.html
_____________________________________________________________________


Security Updates Available for Adobe Bridge | APSB21-07
Bulletin ID 	Date Published       Priority
APSB21-07 	January 12, 2021 	3


Summary

Adobe has released a security update for Adobe Bridge. This update
addresses critical vulnerabilities that could lead to arbitrary code
execution in the context of the current user.


Affected Versions

Product 	Version                        Platform
Adobe Bridge   11.0 and earlier versions       Windows 


Solution

Adobe categorizes these updates with the following priority ratings and
recommends users update their installation to the newest version via the
Creative Cloud desktop app's update mechanism.  For more information,
please reference this help page.  


Product       Version 	Platform          Priority   	Availability   
Adobe Bridge  11.0.1 	Windows and macOS     	3 	Download Page   


Vulnerability details

Vulnerability Category 	Vulnerability Impact 	Severity   CVE Numbers
Out-of-bounds write    Arbitrary code execution  Critical CVE-2021-21012

                                                      CVE-2021-21013
Acknowledgments

Adobe would like to thank  Tran Van Khang \xe2\x80\x93 khangkito
(VinCSS) working with Trend Micro’s Zero Day Initiative
for reporting these issues and for working with Adobe to help protect
our customers.



=========================================================
+ CERT-RENATER       |    tel : 01-53-94-20-44          +
+ 23/25 Rue Daviel   |    fax : 01-53-94-20-41          +
+ 75013 Paris        |    email:cert@support.renater.fr +
=========================================================




