CVE-2024-45142
CVSS V2 None
CVSS V3 None
Description
Substance3D - Stager versions 3.0.3 and earlier are affected by a Write-what-where Condition vulnerability that could allow an attacker to execute arbitrary code in the context of the current user. This vulnerability allows an attacker to write a controlled value to an arbitrary memory location, potentially leading to code execution. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Overview
- CVE ID
- CVE-2024-45142
- Assigner
- adobe
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-10-09T13:28:45.183Z
- Last Modified Date
- 2024-10-09T17:29:06.772Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://helpx.adobe.com/security/products/substance3d_stager/apsb24-81.html | vendor-advisory |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-45142 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-45142 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-10-10 13:34:27 | Added to TrackCVE |