Animate | Access of Uninitialized Pointer (CWE-824)
CVE-2024-45155

7.8HIGH

Key Information:

Vendor
Adobe
Status
Vendor
CVE Published:
10 December 2024

Summary

Adobe Animate versions 23.0.8, 24.0.5 and earlier versions are impacted by an Access of Uninitialized Pointer vulnerability. This vulnerability could potentially lead to arbitrary code execution in the current user's context if exploited. User interaction is necessary for exploitation, as the victim must open a specially crafted malicious file. It is crucial for users to be aware of this vulnerability and take precautions to avoid potential security risks.

Affected Version(s)

Animate 0 <= 24.0.5

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

.