ZDI-CAN-24047: ZDI-24-1137: Adobe Bridge AVI FIle Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Adobe Bridge. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 3.3. The following CVEs are assigned: CVE-2024-39387.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-24047?
The severity of ZDI-CAN-24047 is determined by its potential impact on the confidentiality of sensitive information in Adobe Bridge.
How do I fix ZDI-CAN-24047?
To fix ZDI-CAN-24047, users should ensure they apply the latest security patches provided by Adobe for Adobe Bridge.
Who is affected by ZDI-CAN-24047?
ZDI-CAN-24047 affects installations of Adobe Bridge CC that have not been updated to the latest security release.
What type of attack does ZDI-CAN-24047 involve?
ZDI-CAN-24047 involves a remote attack that requires user interaction, such as visiting a malicious page or opening a malicious file.
What could an attacker gain by exploiting ZDI-CAN-24047?
By exploiting ZDI-CAN-24047, an attacker could potentially disclose sensitive information from the targeted Adobe Bridge installation.