Junglewise Threat Intelligence

CVE-2026-75676: Adobe Bridge stack-based buffer overflow

CVE-2026-75676 · Severity: high · CVSS 7.8 · Published 2026-09-22

Technologies: Adobe Bridge. Vendors: Adobe.

Executive brief

Adobe Bridge, a digital asset management tool, contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code with the privileges of the current user. An attacker can exploit this by crafting a malicious file that, when opened by a victim, triggers the overflow. This could lead to data theft, system compromise, or installation of malware.

Technical details

A stack-based buffer overflow exists in Adobe Bridge that does not properly validate input when processing files, allowing an attacker to overwrite stack memory and redirect execution flow. The vulnerability requires user interaction—specifically, a victim must open a malicious file—making it a local attack vector with user-assisted delivery. Successful exploitation results in arbitrary code execution in the current user's security context.

Affected products

  • Adobe Bridge <UNKNOWN>

Timeline

  • 2026-09-22: disclosed

References

Related threats