CVE-2023-47081

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Dec 13, 2023
Updated: Dec 15, 2023
CWE ID 125

Summary

CVE-2023-47081 is a recently disclosed vulnerability affecting Adobe Substance 3D Stager versions 2.1.1 and prior. This issue represents an out-of-bounds read vulnerability, which allows unauthorized access to sensitive memory content. Malicious actors could potentially exploit this flaw to bypass mitigations like Address Space Layout Randomization (ASLR). Notably, successful exploitation necessitates user interaction, meaning a victim must open a specially crafted file to fall prey to an attack.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Adobe Substance 3D Stager

Affected Vendors

  • Adobe