CVE-2024-41836

InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition. An attacker could exploit this vulnerability to crash the application, resulting in a DoS. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

12 Dec 2024, 21:09

Type Values Removed Values Added
Summary (en) InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS). An attacker could exploit this vulnerability to crash the application, resulting in a denial of service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file. (en) InDesign Desktop versions ID18.5.2, ID19.3 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition. An attacker could exploit this vulnerability to crash the application, resulting in a DoS. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

02 Dec 2024, 22:17

Type Values Removed Values Added
First Time Adobe indesign
Apple macos
Adobe
Microsoft windows
Microsoft
Apple
References () https://helpx.adobe.com/security/products/indesign/apsb24-48.html - () https://helpx.adobe.com/security/products/indesign/apsb24-48.html - Vendor Advisory
CPE cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:a:adobe:indesign:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

21 Nov 2024, 09:33

Type Values Removed Values Added
References () https://helpx.adobe.com/security/products/indesign/apsb24-48.html - () https://helpx.adobe.com/security/products/indesign/apsb24-48.html -

24 Jul 2024, 12:55

Type Values Removed Values Added
Summary
  • (es) Las versiones ID18.5.2, ID19.3 y anteriores de InDesign Desktop se ven afectadas por una vulnerabilidad de desreferencia de puntero nulo que podría provocar una denegación de servicio (DoS) de la aplicación. Un atacante podría aprovechar esta vulnerabilidad para bloquear la aplicación, lo que provocaría una condición de denegación de servicio. La explotación de este problema requiere la interacción del usuario, ya que la víctima debe abrir un archivo malicioso.

23 Jul 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-23 12:15

Updated : 2024-12-12 21:09


NVD link : CVE-2024-41836

Mitre link : CVE-2024-41836

CVE.ORG link : CVE-2024-41836


JSON object : View

Products Affected

microsoft

  • windows

adobe

  • indesign

apple

  • macos
CWE
CWE-476

NULL Pointer Dereference