CVE-2024-49543: InDesign Desktop | Stack-based Buffer Overflow (CWE-121)
InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-49543?
CVE-2024-49543 is classified as a critical vulnerability due to its potential for arbitrary code execution.
How do I mitigate CVE-2024-49543?
To mitigate CVE-2024-49543, users should update Adobe InDesign to the latest version that addresses this vulnerability.
Which versions of InDesign are affected by CVE-2024-49543?
CVE-2024-49543 affects Adobe InDesign versions ID19.5, ID18.5.4, and earlier.
What type of vulnerability is CVE-2024-49543?
CVE-2024-49543 is a stack-based buffer overflow vulnerability.
Does exploitation of CVE-2024-49543 require user interaction?
Yes, exploitation of CVE-2024-49543 requires user interaction, as a victim must open a malicious file.