Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Metrics
Affected Vendors & Products
References
History
Fri, 11 Apr 2025 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe framemaker Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:a:adobe:framemaker:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Adobe
Adobe framemaker Microsoft Microsoft windows |
Tue, 08 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Apr 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Title | Adobe Framemaker | Out-of-bounds Read (CWE-125) | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2025-04-08T18:15:12.046Z
Updated: 2025-04-08T18:38:36.638Z
Reserved: 2025-03-20T17:36:17.302Z
Link: CVE-2025-30303
Updated: 2025-04-08T18:38:24.069Z
Status : Analyzed
Published: 2025-04-08T19:15:50.693
Modified: 2025-04-11T13:07:32.547
Link: CVE-2025-30303
No data.