PT-2023-2742 · Adobe · Substance3D - Painter

Publicado

2023-05-09

·

Atualizado

2023-05-17

·

CVE-2023-29286

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Adobe Substance 3D Painter versions 8.3.0 and earlier
Description The issue is related to an Access of Uninitialized Pointer vulnerability. This could allow an attacker to disclose sensitive memory and potentially bypass mitigations like ASLR. Exploitation requires user interaction, where a victim must open a malicious file.
Recommendations For versions 8.3.0 and earlier, update to a version that contains a fix for this issue to prevent potential exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Access of Uninitialized Pointer

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-02589
CVE-2023-29286
ZDI-23-566

Produtos afetados

Substance3D - Painter