CVE-2024-49513

PDFL SDK versions 21.0.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:adobe:pdf_library_sdk:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

19 Dec 2024, 17:15

Type Values Removed Values Added
First Time Adobe
Adobe pdf Library Sdk
Linux
Microsoft windows
Apple
Linux linux Kernel
Apple macos
Microsoft
References () https://helpx.adobe.com/security/products/pdfl-sdk1/apsb24-98.html - () https://helpx.adobe.com/security/products/pdfl-sdk1/apsb24-98.html - Vendor Advisory
CPE cpe:2.3:a:adobe:pdf_library_sdk:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

16 Dec 2024, 17:15

Type Values Removed Values Added
Summary Not a product versions 21.0.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. PDFL SDK versions 21.0.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CWE CWE-787
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : unknown

10 Dec 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-10 21:15

Updated : 2024-12-19 17:15


NVD link : CVE-2024-49513

Mitre link : CVE-2024-49513


JSON object : View

Products Affected

linux

  • linux_kernel

microsoft

  • windows

adobe

  • pdf_library_sdk

apple

  • macos
CWE

No CWE.