CVE-2022-35709 is a Use After Free vulnerability in Adobe Bridge versions 12.0.2 and earlier, and 11.1.3 and earlier, affecting both macOS and Windows platforms. This medium-severity vulnerability (CVSS 5.5) could lead to sensitive memory disclosure and bypass ASLR, requiring user interaction to open a malicious file for exploitation. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion or media coverage for this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 11.1.3CPE match | cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:* | ||
<= 12.0.2CPE match | cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:* | ||
>= 11.1, < 11.1.4CPE matchmatch criteria | cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:* | ||
>= 12.0, < 12.0.3CPE matchmatch criteria | cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.