VDB
CVE-2024-20789
CVE-2024-20789
PUBLISHED
In Adobe Creative Cloud Dimension bestehen mehrere Schwachstellen. Diese Schwachstellen bestehen aufgrund mehrerer Sicherheitsprobleme, darunter Out-of-bounds write and read, ein nicht vertrauenswürdiger Suchpfad und ein use after free. Ein lokaler Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Code auszuführen und vertrauliche Informationen offenzulegen. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion.
EPSS 0.16% · 37.4th percentile
Risk Scores
EPSS Score
0.16%
37.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Adobe Creative Cloud Dimension <4.0.2 |
Timeline
- Aug 13, 2024 CVE Published
- Aug 15, 2024 EPSS Score
- Sep 5, 2024 EPSS Score
- Sep 26, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 16, 2024 EPSS Score
- Oct 18, 2024 Coalition ESS Score
- Nov 24, 2024 CVE Updated
- Nov 27, 2024 EPSS Score
- Nov 29, 2024 EPSS Score
- Dec 17, 2024 EPSS Score
- Dec 19, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-1852.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-1852 advisory
- https://helpx.adobe.com/security/products/bridge/apsb24-59.html advisory
- https://helpx.adobe.com/security/products/dimension/apsb24-47.html advisory
- https://helpx.adobe.com/security/products/illustrator/apsb24-45.html advisory
- https://helpx.adobe.com/security/products/incopy/apsb24-64.html advisory
- https://helpx.adobe.com/security/products/indesign/apsb24-56.html advisory
- https://helpx.adobe.com/security/products/substance3d-sampler/apsb24-65.html advisory
- https://helpx.adobe.com/security/products/substance3d_stager/apsb24-60.html advisory