{"api_version":"1","generated_at":"2026-07-23T15:20:26+00:00","cve":"CVE-2011-0615","urls":{"html":"https://cve.report/CVE-2011-0615","api":"https://cve.report/api/cve/CVE-2011-0615.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2011-0615","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2011-0615"},"summary":{"title":"CVE-2011-0615","description":"Multiple buffer overflows in Adobe Audition 3.0.1 and earlier allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted data in unspecified fields in the TRKM chunk in an Audition Session (aka .ses) file, related to inconsistent use of character data types.","state":"PUBLISHED","assigner":"adobe","published_at":"2011-05-16 17:55:04","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-119","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9.3","severity":"","vector":"AV:N/AC:M/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.securityfocus.com/bid/47838","name":"http://www.securityfocus.com/bid/47838","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"Adobe Audition '.ses' (CVE-2011-0615) Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.coresecurity.com/content/Adobe-Audition-malformed-SES-file","name":"http://www.coresecurity.com/content/Adobe-Audition-malformed-SES-file","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"Adobe Audition vulnerability processing malformed session file  |  CoreLabs Advisories","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.adobe.com/support/security/bulletins/apsb11-10.html","name":"http://www.adobe.com/support/security/bulletins/apsb11-10.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Adobe - Security Bulletins: APSB11-10 - Potential vulnerabilities in Adobe Audition","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2011-0615","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-0615","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2011","cve_id":"615","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"adobe","cpe5":"audition","cpe6":"3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"615","vulnerable":"1","versionEndIncluding":"3.0.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"adobe","cpe5":"audition","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T21:58:26.046Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.coresecurity.com/content/Adobe-Audition-malformed-SES-file"},{"name":"47838","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/47838"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.adobe.com/support/security/bulletins/apsb11-10.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"descriptions":[{"lang":"en","value":"Multiple buffer overflows in Adobe Audition 3.0.1 and earlier allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted data in unspecified fields in the TRKM chunk in an Audition Session (aka .ses) file, related to inconsistent use of character data types."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2011-05-16T17:00:00.000Z","orgId":"078d4453-3bcd-4900-85e6-15281da43538","shortName":"adobe"},"references":[{"tags":["x_refsource_MISC"],"url":"http://www.coresecurity.com/content/Adobe-Audition-malformed-SES-file"},{"name":"47838","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/47838"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.adobe.com/support/security/bulletins/apsb11-10.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"psirt@adobe.com","ID":"CVE-2011-0615","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple buffer overflows in Adobe Audition 3.0.1 and earlier allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted data in unspecified fields in the TRKM chunk in an Audition Session (aka .ses) file, related to inconsistent use of character data types."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://www.coresecurity.com/content/Adobe-Audition-malformed-SES-file","refsource":"MISC","url":"http://www.coresecurity.com/content/Adobe-Audition-malformed-SES-file"},{"name":"47838","refsource":"BID","url":"http://www.securityfocus.com/bid/47838"},{"name":"http://www.adobe.com/support/security/bulletins/apsb11-10.html","refsource":"CONFIRM","url":"http://www.adobe.com/support/security/bulletins/apsb11-10.html"}]}}}},"cveMetadata":{"assignerOrgId":"078d4453-3bcd-4900-85e6-15281da43538","assignerShortName":"adobe","cveId":"CVE-2011-0615","datePublished":"2011-05-16T17:00:00.000Z","dateReserved":"2011-01-20T00:00:00.000Z","dateUpdated":"2024-09-17T02:52:17.866Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-05-16 17:55:04","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-119","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:audition:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.1","matchCriteriaId":"B37DF073-2DB0-46C3-AFC8-35EFB8207EA2"},{"vulnerable":true,"criteria":"cpe:2.3:a:adobe:audition:3.0:*:*:*:*:*:*:*","matchCriteriaId":"FB9A8F5E-3E31-4577-94C7-7EC7154BAC41"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2011","CveId":"615","Ordinal":"1","Title":"CVE-2011-0615","CVE":"CVE-2011-0615","Year":"2011"},"notes":[{"CveYear":"2011","CveId":"615","Ordinal":"1","NoteData":"Multiple buffer overflows in Adobe Audition 3.0.1 and earlier allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted data in unspecified fields in the TRKM chunk in an Audition Session (aka .ses) file, related to inconsistent use of character data types.","Type":"Description","Title":"CVE-2011-0615"},{"CveYear":"2011","CveId":"615","Ordinal":"2","NoteData":"2011-05-16","Type":"Other","Title":"Published"}]}}}