CVE-2023-44331 is an out-of-bounds read vulnerability affecting Adobe Photoshop versions 24.7.1 and earlier, and 25.0 and earlier, across Windows and macOS platforms. This medium-severity flaw (CVSS 5.5) could lead to sensitive memory disclosure and bypass ASLR, requiring user interaction to open a malicious file for exploitation. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 24.7.1CPE matchmatch criteria | cpe:2.3:a:adobe:photoshop:*:*:*:*:*:*:*:* | ||
<= 25.0CPE matchmatch criteria | cpe:2.3:a:adobe:photoshop:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.