CVE-2024-34137: Adobe Illustrator 2024 CGM File Parsing Null Pointer Dereference
Illustrator versions 28.5, 27.9.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition. An attacker could exploit this vulnerability to crash the application, resulting in a DoS. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-34137?
CVE-2024-34137 has a critical severity level due to its potential to cause application denial-of-service (DoS).
How do I fix CVE-2024-34137?
To fix CVE-2024-34137, update Adobe Illustrator to version 28.6 or later, or 27.9.5 or later.
Which versions of Adobe Illustrator are affected by CVE-2024-34137?
CVE-2024-34137 affects Adobe Illustrator versions 28.5, 27.9.4, and earlier.
What type of vulnerability is CVE-2024-34137?
CVE-2024-34137 is a NULL Pointer Dereference vulnerability that can lead to application crashes.
Can CVE-2024-34137 be exploited remotely?
Yes, CVE-2024-34137 can potentially be exploited remotely to crash the application.