ZDI-CAN-24028: ZDI-24-1140: Adobe Dimension USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Adobe Dimension. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2024-34126.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-24028?
The severity of ZDI-CAN-24028 is high due to its potential to disclose sensitive information.
How do I fix ZDI-CAN-24028?
To fix ZDI-CAN-24028, ensure you install the latest available security updates from Adobe for Dimension.
Who is affected by ZDI-CAN-24028?
ZDI-CAN-24028 affects users of Adobe Dimension who may inadvertently visit malicious pages or open harmful files.
What type of attack does ZDI-CAN-24028 enable?
ZDI-CAN-24028 enables remote attackers to disclose sensitive information through social engineering methods.
Is user interaction required to exploit ZDI-CAN-24028?
Yes, user interaction is required for ZDI-CAN-24028, as the target must visit a malicious page or open a malicious file.