Loading HuntDB...

GHSA-pc6m-5m68-4xr8

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Adobe InDesign version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 file that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Related CVEs

Key Information

GHSA ID
GHSA-pc6m-5m68-4xr8
Published
January 14, 2022 12:01 AM
Last Modified
January 16, 2022 12:00 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 26, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.