CVE-2024-47456
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Nov 12, 2024
Updated: Nov 14, 2024
CWE ID 125
Summary
CVE-2024-47456 is a newly disclosed vulnerability that impacts Adobe Illustrator versions 28.7.1 and older. This issue is classified as an out-of-bounds read vulnerability, which means it allows unauthorized access to sensitive memory content. If exploited, an attacker could potentially bypass Address Space Layout Randomization (ASLR), a common security mitigation. Notably, the exploitation of this vulnerability requires user interaction, meaning a victim must open a maliciously crafted file for the attack to be successful.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe Illustrator
Affected Vendors
- Adobe