First published: Wed Aug 14 2024(Updated: )
Dimension versions 3.4.11 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Dimension | <=3.4.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34126 has been rated as high severity due to its potential for sensitive memory disclosure.
To fix CVE-2024-34126, update Adobe Dimension to version 3.4.12 or later.
Exploitation of CVE-2024-34126 could allow attackers to bypass security mitigations and disclose sensitive information.
Yes, exploiting CVE-2024-34126 requires user interaction.
Adobe Dimension versions 3.4.11 and earlier are affected by CVE-2024-34126.