CVE-2024-47431: Substance3D - Painter | Heap-based Buffer Overflow (CWE-122)
Substance3D - Painter versions 10.1.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47431?
CVE-2024-47431 is classified as a critical vulnerability with the potential for arbitrary code execution.
How do I fix CVE-2024-47431?
To mitigate CVE-2024-47431, update Adobe Substance 3D Painter to version 10.1.1 or later.
What types of systems are impacted by CVE-2024-47431?
CVE-2024-47431 affects Adobe Substance 3D Painter versions 10.1.0 and earlier on any system that runs the application.
What does CVE-2024-47431 exploit?
CVE-2024-47431 can exploit a heap-based buffer overflow that requires user interaction to trigger.
Can CVE-2024-47431 lead to data compromise?
Yes, exploitation of CVE-2024-47431 can potentially lead to unauthorized actions and data compromise by executing arbitrary code.