The patches, all released on April 8, 2025, aim to resolve critical, important, and moderate security flaws that could potentially expose users to various cyber threats, including arbitrary code execution, privilege escalation, and application denial-of-service attacks. Premiere Pro’s update resolves a critical heap-based buffer overflow vulnerability (CVE-2025-27196), which could lead to arbitrary code execution in affected versions 24.6.4 and earlier, as well as 25.1 for Windows and macOS. These vulnerabilities could lead to arbitrary code execution, privilege escalation, or exposure of sensitive information. This flaw has a CVSS score of 5.4 and could lead to arbitrary code execution if exploited successfully. Successful exploitation could lead to arbitrary code execution in the context of the logged-on user.
This Cyber News was published on cybersecuritynews.com. Publication date: Wed, 09 Apr 2025 15:25:10 +0000