Description
Audition is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: 2026-07-14
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Audition contains an out‑of‑bounds read that can expose sensitive in‑memory data. The flaw allows an attacker to read bytes beyond the intended buffer limits, potentially leaking private data and thereby revealing confidential information.

Affected Systems

The product impacted is Adobe Audition. No specific version numbers are provided in the advisory, so any installation of Adobe Audition could be vulnerable until a patched release is applied.

Risk and Exploitability

The CVSS score of 5.5 indicates moderate severity, while the EPSS score of less than 1% signals a very low current exploitation probability. This vulnerability is not part of the CISA KEV catalog. An attacker would need the victim to open a crafted malicious file, so the attack vector is user interaction, typically via an accidentally imported file or otherwise opened document in Audition.

Generated by OpenCVE AI on July 31, 2026 at 05:53 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Adobe Audition update that addresses the out‑of‑bounds read flaw, as described in Adobe’s security advisory.
  • Enable Adobe’s automatic update feature or regularly check for newer releases to ensure patches are applied promptly.
  • Educate users to avoid opening unknown or untrusted files in Audition, and consider implementing file‑type restrictions or sandboxing to further reduce risk of accidental exploitation.

Generated by OpenCVE AI on July 31, 2026 at 05:53 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 15 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Adobe
Adobe audition
Vendors & Products Adobe
Adobe audition

Tue, 14 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 18:15:00 +0000

Type Values Removed Values Added
Description Audition is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Title Audition | Out-of-bounds Read (CWE-125)
Weaknesses CWE-125
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published:

Updated: 2026-07-14T21:12:40.444Z

Reserved: 2026-05-20T15:50:31.365Z

Link: CVE-2026-47969

cve-icon Vulnrichment

Updated: 2026-07-14T18:15:48.659Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T06:00:16Z

Weaknesses