
CVE-2024-34138 – Adobe Illustrator CGM File Parsing Division By zero
https://notcve.org/view.php?id=CVE-2024-34138
14 Aug 2024 — Illustrator versions 28.5, 27.9.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS). An attacker could exploit this vulnerability to crash the application, resulting in a denial of service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/illustrator/apsb24-45.html • CWE-476: NULL Pointer Dereference •

CVE-2024-34137 – Adobe Illustrator 2024 CGM File Parsing Null Pointer Dereference
https://notcve.org/view.php?id=CVE-2024-34137
14 Aug 2024 — Illustrator versions 28.5, 27.9.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition. An attacker could exploit this vulnerability to crash the application, resulting in a DoS. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/illustrator/apsb24-45.html • CWE-476: NULL Pointer Dereference •

CVE-2024-34135 – Adobe Illustrator CC 2023 v27.9 Vulnerability II
https://notcve.org/view.php?id=CVE-2024-34135
14 Aug 2024 — Illustrator versions 28.5, 27.9.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/illustrator/apsb24-45.html • CWE-125: Out-of-bounds Read •

CVE-2024-20791 – Illustrator 2024 BMP File Parsing Memory Corruption
https://notcve.org/view.php?id=CVE-2024-20791
16 May 2024 — Illustrator versions 28.4, 27.9.3 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/illustrator/apsb24-30.html • CWE-125: Out-of-bounds Read •

CVE-2024-20793 – Illustrator 2024 TIF file parsing Out Of Bound Read Information disclosure vulnerability
https://notcve.org/view.php?id=CVE-2024-20793
16 May 2024 — Illustrator versions 28.4, 27.9.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/illustrator/apsb24-30.html • CWE-125: Out-of-bounds Read •

CVE-2024-20792 – Adobe Illustrator TIF File Parsing Use-After-Free Remote memory corruption
https://notcve.org/view.php?id=CVE-2024-20792
16 May 2024 — Illustrator versions 28.4, 27.9.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. • https://helpx.adobe.com/security/products/illustrator/apsb24-30.html • CWE-416: Use After Free •

CVE-2024-30271 – Adobe Illustrator 2023 CC 27.7 Memory Corruption Out-Of-Bounds-Write Vulnerability III.
https://notcve.org/view.php?id=CVE-2024-30271
11 Apr 2024 — Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Las versiones 28.3, 27.9.2 y anteriores de Illustrator se ven afectadas por una vulnerabilidad de escritura fuera de los límites que podría provocar la ejecución de código arbitrario en el contexto del usuario actual. La explotación ... • https://helpx.adobe.com/security/products/illustrator/apsb24-25.html • CWE-787: Out-of-bounds Write •

CVE-2024-30272 – Adobe Illustrator 2024 GIF file parsing Out-Of-Bound Write remote code execution vulnerabiity
https://notcve.org/view.php?id=CVE-2024-30272
11 Apr 2024 — Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Las versiones 28.3, 27.9.2 y anteriores de Illustrator se ven afectadas por una vulnerabilidad de escritura fuera de los límites que podría provocar la ejecución de código arbitrario en el contexto del usuario actual. La explotación ... • https://helpx.adobe.com/security/products/illustrator/apsb24-25.html • CWE-787: Out-of-bounds Write •

CVE-2024-30273 – Adobe Illustrator 2024 PS file Parsing Stack based Buffer Overflow Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-30273
11 Apr 2024 — Illustrator versions 28.3, 27.9.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Las versiones 28.3, 27.9.2 y anteriores de Illustrator se ven afectadas por una vulnerabilidad de desbordamiento de búfer en la región stack de la memoria que podría provocar la ejecución de código arbitrario en el contexto de... • https://helpx.adobe.com/security/products/illustrator/apsb24-25.html • CWE-121: Stack-based Buffer Overflow •

CVE-2024-20798 – Illustrator 2024 CDR File parsing Out of Bound Read Information disclosure vulnerability
https://notcve.org/view.php?id=CVE-2024-20798
11 Apr 2024 — Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Las versiones 28.3, 27.9.2 y anteriores de Illustrator se ven afectadas por una vulnerabilidad de lectura fuera de límites que podría provocar la divulgación de memoria confidencial. ... • https://helpx.adobe.com/security/products/illustrator/apsb24-25.html • CWE-125: Out-of-bounds Read •