CVE-2024-52998 – Substance3D - Stager | Out-of-bounds Read (CWE-125)
https://notcve.org/view.php?id=CVE-2024-52998
Substance3D - Stager versions 3.0.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/substance3d_stager/apsb24-60.html • CWE-125: Out-of-bounds Read •
CVE-2024-45142 – Substance3D - Stager | Write-what-where Condition (CWE-123)
https://notcve.org/view.php?id=CVE-2024-45142
Substance3D - Stager versions 3.0.3 and earlier are affected by a Write-what-where Condition vulnerability that could allow an attacker to execute arbitrary code in the context of the current user. This vulnerability allows an attacker to write a controlled value to an arbitrary memory location, potentially leading to code execution. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/substance3d_stager/apsb24-81.html • CWE-123: Write-what-where Condition •
CVE-2024-45143 – Substance3D - Stager | Heap-based Buffer Overflow (CWE-122)
https://notcve.org/view.php?id=CVE-2024-45143
Substance3D - Stager versions 3.0.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/substance3d_stager/apsb24-81.html • CWE-122: Heap-based Buffer Overflow •
CVE-2024-45141 – Substance3D - Stager | Out-of-bounds Write (CWE-787)
https://notcve.org/view.php?id=CVE-2024-45141
Substance3D - Stager versions 3.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/substance3d_stager/apsb24-81.html • CWE-787: Out-of-bounds Write •
CVE-2024-45152 – Substance3D - Stager | Out-of-bounds Write (CWE-787)
https://notcve.org/view.php?id=CVE-2024-45152
Substance3D - Stager versions 3.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/substance3d_stager/apsb24-81.html • CWE-787: Out-of-bounds Write •