Substance3D - Designer versions 13.1.1 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
History

Thu, 12 Dec 2024 17:30:00 +0000

Type Values Removed Values Added
Title Adobe Substance 3D Designer RAS File Parsing Out-Of-Bounds Read Vulnerability Substance3D - Designer | Out-of-bounds Read (CWE-125)
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N'}

cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published: 2024-05-16T08:56:49.490Z

Updated: 2024-12-12T17:20:22.159Z

Reserved: 2024-03-26T16:04:09.503Z

Link: CVE-2024-30281

cve-icon Vulnrichment

Updated: 2024-08-02T01:32:07.048Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-16T09:15:11.007

Modified: 2024-12-12T21:12:29.690

Link: CVE-2024-30281

cve-icon Redhat

No data.