CVE Vulnerabilities

CVE-2024-30295

NULL Pointer Dereference

Published: May 16, 2024 | Modified: Dec 02, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

Name Vendor Start Version End Version
Animate Adobe 23.0.0 (including) 23.0.6 (excluding)
Animate Adobe 24.0.0 (including) 24.0.3 (excluding)

Potential Mitigations

References