CVE-2023-47061: ZDI-CAN-22278: Adobe Dimension GLB File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Adobe Dimension versions 3.4.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-47061?
CVE-2023-47061 has been classified as a medium severity vulnerability due to its potential to disclose sensitive memory.
How do I fix CVE-2023-47061?
To fix CVE-2023-47061, update Adobe Dimension to version 3.4.11 or later.
What type of vulnerability is CVE-2023-47061?
CVE-2023-47061 is an out-of-bounds read vulnerability affecting Adobe Dimension.
Can CVE-2023-47061 be exploited remotely?
Exploitation of CVE-2023-47061 requires user interaction, thus it cannot be exploited remotely without user action.
What software is affected by CVE-2023-47061?
CVE-2023-47061 affects Adobe Dimension versions 3.4.10 and earlier.