Vulnerabilities > Adobe > Incopy > 15.1.3

DATE CVE VULNERABILITY TITLE RISK
2022-01-13 CVE-2021-45054 Use After Free vulnerability in Adobe Incopy 15.1.3/16.0/16.4
Adobe InCopy version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 file that could lead to disclosure of sensitive memory.
network
adobe CWE-416
4.3
2022-01-13 CVE-2021-45055 Out-of-bounds Read vulnerability in Adobe Incopy 15.1.3/16.0/16.4
Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure.
local
low complexity
adobe CWE-125
7.8
2022-01-13 CVE-2021-45056 Out-of-bounds Write vulnerability in Adobe Incopy 15.1.3/16.0/16.4
Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2021-11-22 CVE-2021-43015 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe Incopy 15.1.3/16.0/16.4
Adobe InCopy version 16.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious GIF file, potentially resulting in arbitrary code execution in the context of the current user.
network
adobe CWE-119
critical
9.3
2021-11-22 CVE-2021-43016 NULL Pointer Dereference vulnerability in Adobe Incopy 15.1.3/16.0/16.4
Adobe InCopy version 16.4 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file.
network
adobe CWE-476
4.3
2021-06-28 CVE-2021-21090 Path Traversal vulnerability in Adobe Incopy 15.1.3/16.0
Adobe InCopy version 16.0 (and earlier) is affected by an path traversal vulnerability when parsing a crafted file.
network
adobe CWE-22
critical
9.3
2021-01-13 CVE-2021-21010 Uncontrolled Search Path Element vulnerability in Adobe Incopy 15.1.3
InCopy version 15.1.1 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user.
network
high complexity
adobe CWE-427
5.1