CVE-2024-20797

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Apr 11, 2024
CWE ID 125

Summary

CVE-2024-20797 is a newly disclosed vulnerability affecting Animate software versions 23.0.4 and earlier. This issue involves an out-of-bounds read vulnerability during file parsing, where data is read beyond the allocated memory limit. Due to this, an attacker can potentially execute code in the current user's context. However, to exploit this vulnerability, the user needs to open a specially crafted file.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share