CVE-2020-24418: Adobe After Effects Out-of-Bounds Read Vulnerability
Adobe After Effects version 17.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .aepx file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. This vulnerability requires user interaction to exploit.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-24418?
CVE-2020-24418 is classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2020-24418?
To fix CVE-2020-24418, update Adobe After Effects to version 17.1.2 or later.
What type of vulnerability is CVE-2020-24418?
CVE-2020-24418 is an out-of-bounds read vulnerability.
What can an attacker do with CVE-2020-24418?
An attacker can exploit CVE-2020-24418 to execute arbitrary code on the affected system.
Which versions of Adobe After Effects are affected by CVE-2020-24418?
Adobe After Effects versions 17.1.1 and earlier are affected by CVE-2020-24418.