← back
CVE-2020-24421mediumCWE-476

Adobe InDesign 15.1.2 NULL Pointer Dereference Bug

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.5epss 1.8%
exploitation probability
1.8%top 22% of all CVEs
observed exploitation
nono source reports it
Adobe InDesign version 15.1.2 (and earlier) is affected by a NULL pointer dereference bug that occurs when handling a malformed .indd file. The impact is limited to causing a denial-of-service of the client application. User interaction is required to exploit this issue.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Affected products
Adobe · InDesign