Impact
Premiere Pro suffers from an out‑of‑bounds write that permits an attacker to run arbitrary code within the privileges of the user who opens a malicious file. The flaw is a classic buffer overflow (CWE‑787) and could affect confidentiality, integrity, or availability of the victim’s data if exploited.
Affected Systems
Adobe Premiere Pro, with no specific vulnerable versions listed in the CVE. The Adobe Security Bulletin APSB26‑76 contains the remediation; users should verify their version and apply the patch.
Risk and Exploitability
The CVSS score of 7.8 indicates a high severity impact. An EPSS score of less than 1 % suggests that exploitation is currently considered rare. Because the flaw requires user interaction—an attacker must supply and the victim must open a malicious file—the attack vector is via social engineering or compromised media. The vulnerability is not listed in the CISA KEV catalog. Once the Adobe update is applied, the risk is effectively eliminated.
OpenCVE Enrichment