Animate | Out-of-bounds Write (CWE-787)
CVE-2024-52988
7.8HIGH
Summary
Adobe Animate versions 23.0.8, 24.0.5, and earlier are susceptible to an out-of-bounds write vulnerability that can allow attackers to execute arbitrary code with the privileges of the current user. Exploitation of this vulnerability necessitates user interaction, as the targeted individual must open a crafted malicious file. This significant security risk underscores the importance of vigilance around file openings and reinforces the need for users to keep their software updated to mitigate potential threats. For further details, refer to the official Adobe security advisory.
Affected Version(s)
Animate 0 <= 24.0.5
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published