CVE Vulnerabilities

CVE-2023-21593

NULL Pointer Dereference

Published: Feb 17, 2023 | Modified: Feb 28, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Adobe InDesign versions ID18.1 (and earlier) and ID17.4 (and earlier) are affected by a NULL Pointer Dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Weakness

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Affected Software

Name Vendor Start Version End Version
Indesign Adobe 17.0 (including) 17.4 (including)
Indesign Adobe 18.0 (including) 18.0 (including)
Indesign Adobe 18.1 (including) 18.1 (including)

Potential Mitigations

References