Impact
The vulnerability is a divide‑by‑zero flaw that exists in Adobe Bridge versions 16.0.2, 15.1.4 and all earlier releases. When a crafted file that triggers the error is opened by the application, the runtime exception causes the Bridge process to crash or become unresponsive, resulting in a denial‑of‑service condition for the user. The flaw does not directly expose data or allow arbitrary code execution.
Affected Systems
Adobe Bridge installations on any platform that use version 16.0.2, 15.1.4 or earlier are affected. This includes all builds distributed before the defined fixed releases. Users who have not upgraded beyond these versions are susceptible to the divide‑by‑zero issue.
Risk and Exploitability
The CVSS base score of 5.5 indicates a moderate severity. Exploitation requires a malicious file and user interaction to open the file, so the attack vector is user‑initiated. No EPSS score is publicly available and the vulnerability is not listed in the CISA KEV catalog, but because the failure interrupts legitimate use, environments that frequently process external Bridge files face a moderate operational risk.
OpenCVE Enrichment