Security Updates Available for Adobe Illustrator | APSB20-37
Adobe has released updates for Adobe Illustrator 2020 for Windows. This update resolves critical vulnerabilities that could lead to arbitrary code execution in the context of current user.
Adobe categorizes these updates with the following priority ratings and recommends users update their installation to the newest version via the Creative Cloud desktop app's update mechanism. For more information, please reference this help page.
Product | Version | Platform | Priority | Availability |
Illustrator 2020 | 24.2 |
Windows and macOS | 3 | Download Page |
Vulnerability Category | Vulnerability Impact | Severity | CVE Numbers |
Buffer Errors | Arbitrary code execution | Critical | CVE-2020-9642 |
Memory Corruption | Arbitrary Code Execution | Critical | CVE-2020-9575 CVE-2020-9641 CVE-2020-9640 CVE-2020-9639 |
Adobe would like to thank the following individuals and organizations for reporting the relevant issues and for working with Adobe to help protect our customers:
- Kushal Arvind Shah of Fortinet's FortiGuard Labs. (CVE-2020-9575)
- Yonghui Han of Fortinet's FortiGuard Labs. (CVE-2020-9641, CVE-2020-9640, CVE-2020-9639, CVE-2020-9642)