VYPR
High severity7.8NVD Advisory· Published Sep 10, 2020· Updated Jun 17, 2026

CVE-2020-9729

CVE-2020-9729

Description

A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions). Insecure handling of a malicious indd file could be abused to cause an out-of-bounds memory access, potentially resulting in code execution in the context of the current user.

Affected products

3
  • cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*range: <=15.1.1
    • (no CPE)range: <=15.1.1
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.