CVE-2021-43017
Published on: Not Yet Published
Last Modified on: 02/02/2022 01:05:00 PM UTC
Certain versions of Creative Cloud Desktop Application from Adobe contain the following vulnerability:
Adobe Creative Cloud version 5.5 (and earlier) are affected by an Application denial of service vulnerability in the Creative Cloud Desktop installer. An authenticated attacker with root privileges could leverage this vulnerability to achieve denial of service by planting a malicious file on the victim's local machine. User interaction is required before product installation to abuse this vulnerability.
- CVE-2021-43017 has been assigned by
[email protected] to track the vulnerability - currently rated as MEDIUM severity.
- Affected Vendor/Software:
Adobe - GoCart version <= 5.5
- Affected Vendor/Software:
Adobe - GoCart version <= None
- Affected Vendor/Software:
Adobe - GoCart version <= None
- Affected Vendor/Software:
Adobe - GoCart version <= None
CVSS3 Score: 4.2 - MEDIUM
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
LOCAL | LOW | HIGH | REQUIRED |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | NONE | NONE | HIGH |
CVSS2 Score: 3.5 - LOW
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
NETWORK | MEDIUM | SINGLE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
NONE | NONE | PARTIAL |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Adobe Security Bulletin | helpx.adobe.com text/html |
![]() |
Related QID Numbers
- 376025 Adobe Creative Cloud Desktop Application Denial of Service(DoS) Vulnerability (ASPB21-111)
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Adobe | Creative Cloud Desktop Application | All | All | All | All |
Operating System | Apple | Macos | - | All | All | All |
- cpe:2.3:a:adobe:creative_cloud_desktop_application:*:*:*:*:*:*:*:*:
- cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2021-43017 : Adobe Creative Cloud version 5.5 and earlier are affected by an Application denial of service vu… twitter.com/i/web/status/1… | 2021-11-18 19:04:19 |