Lucene search

K
adobeAdobeAPSB24-06
HistoryJan 09, 2024 - 12:00 a.m.

APSB24-06 : Security update available for Adobe Substance 3D Stager

2024-01-0900:00:00
helpx.adobe.com
14
adobe
substance 3d stager
security update
vulnerabilities
memory leak
code execution

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

AI Score

8.2

Confidence

Low

EPSS

0.001

Percentile

35.1%

Adobe has released an update for Adobe Substance 3D Stager. This update addresses important vulnerabilities in Adobe Substance 3D Stager. Successful exploitation could lead to memory leak and arbitrary code execution in the context of the current user.

Affected configurations

Vulners
Node
adobesubstance_3d_stagerRange2.1.3
VendorProductVersionCPE
adobesubstance_3d_stager*cpe:2.3:a:adobe:substance_3d_stager:*:*:*:*:*:*:*:*

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

AI Score

8.2

Confidence

Low

EPSS

0.001

Percentile

35.1%