Description
Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: 2026-07-31
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Adobe Premiere Pro is affected by an out‑of‑bounds write that can be triggered when a user opens a specially crafted media file. The flaw allows an attacker to write arbitrary data beyond the intended memory bounds, leading to control‑flow hijacking and execution of malicious code in the context of the victim user.

Affected Systems

Affected products are Adobe Premiere Pro. The public data does not list specific version numbers, so all current releases may be susceptible until an official fix is applied. Users should verify which version they are running against Adobe’s advisory.

Risk and Exploitability

The CVSS score of 7.8 indicates a high severity. The EPSS score of <1% suggests a low probability of real‑world exploitation at present. The vulnerability is not included in CISA’s KEV catalog. Because exploitation requires the user to open a malicious file, the attack vector is user interaction, but once executed an attacker can achieve arbitrary code execution.

Generated by OpenCVE AI on August 2, 2026 at 03:48 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Check the Adobe website for a security update that addresses the out‑of‑bounds write and install the latest Premiere Pro patch immediately.
  • Configure the system to block or quarantine media files from untrusted sources until a remediation is applied.
  • Use a sandbox or virtualized environment to open suspicious media files and monitor for abnormal behavior.

Generated by OpenCVE AI on August 2, 2026 at 03:48 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 03 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Sat, 01 Aug 2026 00:45:00 +0000

Type Values Removed Values Added
First Time appeared Adobe
Adobe premiere
Vendors & Products Adobe
Adobe premiere

Fri, 31 Jul 2026 23:15:00 +0000

Type Values Removed Values Added
Description Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Title Premiere Pro | Out-of-bounds Write (CWE-787)
Weaknesses CWE-787
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published:

Updated: 2026-08-04T03:56:22.645Z

Reserved: 2026-03-30T17:30:36.492Z

Link: CVE-2026-34641

cve-icon Vulnrichment

Updated: 2026-08-03T19:23:54.301Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-31T23:17:23.563

Modified: 2026-08-07T18:56:07.890

Link: CVE-2026-34641

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-02T04:00:06Z

Weaknesses