Animate | Buffer Underwrite ('Buffer Underflow') (CWE-124)
CVE-2024-52990
7.8HIGH
Summary
The vulnerability in Adobe Animate allows for a Buffer Underwrite (Buffer Underflow) that could lead to arbitrary code execution within the user context. By exploiting this vulnerability, an attacker can manipulate memory, enabling the execution of malicious code under the privileges granted to the current user. Successful exploitation necessitates user interaction, as the victim must engage with a specially crafted malicious file.
Affected Version(s)
Animate 0 <= 24.0.5
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published