CVE-2024-41870: Media Encoder | Out-of-bounds Read (CWE-125)
Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-41870?
CVE-2024-41870 has been classified as a significant security vulnerability due to its potential for sensitive information disclosure.
How do I fix CVE-2024-41870?
To remediate CVE-2024-41870, users should update Adobe Media Encoder to version 23.6.9 or later, or to version 24.6 or later.
What kind of vulnerability is CVE-2024-41870?
CVE-2024-41870 is an out-of-bounds read vulnerability that may allow attackers to bypass security mitigations.
Who is affected by CVE-2024-41870?
CVE-2024-41870 affects Adobe Media Encoder versions 24.5, 23.6.8, and earlier.
Does CVE-2024-41870 require user interaction to exploit?
Yes, exploitation of CVE-2024-41870 requires user interaction.