Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46223 | Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer Underflow') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could leverage this vulnerability to manipulate memory in such a way that they could execute code under the privileges of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
Wed, 18 Dec 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe animate Apple Apple macos Microsoft Microsoft windows |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:adobe:animate:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Adobe
Adobe animate Apple Apple macos Microsoft Microsoft windows |
Wed, 11 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Dec 2024 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer Underflow') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could leverage this vulnerability to manipulate memory in such a way that they could execute code under the privileges of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
| Title | Animate | Buffer Underwrite ('Buffer Underflow') (CWE-124) | |
| Weaknesses | CWE-124 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2024-12-17T04:55:39.718Z
Reserved: 2024-11-18T17:46:25.280Z
Link: CVE-2024-52990
Updated: 2024-12-11T14:43:47.527Z
Status : Analyzed
Published: 2024-12-10T21:15:19.170
Modified: 2024-12-18T17:09:58.263
Link: CVE-2024-52990
No data.
OpenCVE Enrichment
No data.
EUVD