CVE-2024-45146: Dimension | Use After Free (CWE-416)
Published Oct 9, 2024
·Updated
Dimension versions 4.0.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
3 affected components
All of the following
Adobe Dimension<4.0.4
Any of the following
macOS
Microsoft Windows
Event History
Oct 9, 2024
CVE Published
via MITRE·08:51 AM
Data Sourced
via MITRE·08:51 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-45146?
CVE-2024-45146 has a high severity due to its potential for arbitrary code execution.
2
How do I fix CVE-2024-45146?
To fix CVE-2024-45146, update Adobe Dimension to version 4.0.4 or later.
3
What systems are affected by CVE-2024-45146?
CVE-2024-45146 affects Adobe Dimension versions 4.0.3 and earlier on supported operating systems.
4
What type of vulnerability is CVE-2024-45146?
CVE-2024-45146 is a Use After Free vulnerability.
5
Is user interaction required to exploit CVE-2024-45146?
Yes, exploitation of CVE-2024-45146 requires user interaction by opening a malicious file.