CVE-2024-20744: Adobe Substance 3D Paint PICT Parsing Access Violation Write Vulnerability
Substance3D - Painter versions 9.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-20744?
CVE-2024-20744 is classified as a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2024-20744?
To fix CVE-2024-20744, users should upgrade Adobe Substance 3D Painter to version 9.1.2 or later.
What does CVE-2024-20744 affect?
CVE-2024-20744 affects Adobe Substance 3D Painter versions 9.1.1 and earlier.
What is the potential impact of exploiting CVE-2024-20744?
Exploiting CVE-2024-20744 could lead to arbitrary code execution in the context of the current user.
What is required for an attack involving CVE-2024-20744?
Exploitation of CVE-2024-20744 requires user interaction, specifically opening a malicious file.