CVE-2024-34125: ZDI-CAN-24027: Adobe Dimension GLB File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
Dimension versions 3.4.11 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-34125?
The severity of CVE-2024-34125 is considered high due to the potential for sensitive memory disclosure.
How do I fix CVE-2024-34125?
To fix CVE-2024-34125, update Adobe Dimension to version 3.4.12 or later.
What does CVE-2024-34125 affect?
CVE-2024-34125 affects Adobe Dimension versions 3.4.11 and earlier.
What type of vulnerability is CVE-2024-34125?
CVE-2024-34125 is classified as an out-of-bounds read vulnerability.
What can an attacker achieve by exploiting CVE-2024-34125?
An attacker can potentially bypass mitigations such as ASLR and disclose sensitive memory through exploiting CVE-2024-34125.