Skip to content

Adobe Products Arbitrary Code Execution Multiple Vulnerabilities - 20240515004

Overview

Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.

What is vulnerable?

Product(s) Affected Summary Dated
- Adobe Acrobat DC 24.002.20736 and earlier versions on Windows and macOS.
- Adobe Acrobat Reader DC 24.002.20736 and earlier versions on Windows and macOS.
- Adobe Acrobat 2020 20.005.30574 and earlier versions on Windows and macOS.
- Adobe Acrobat Reader 2020 20.005.30574 and earlier versions on Windows and macOS.
- Adobe Substance 3D Designer 13.1.1 and earlier versions.
- Adobe Aero 0.23.4 and earlier versions on Windows and macOS.
- Adobe FrameMaker 2020 Release Update 5 and earlier on Windows.
- Adobe FrameMaker 2022 Release Update 3 and earlier on Windows.
- Adobe Dreamweaver 21.3 and earlier versions on Windows and macOS.
- Adobe Illustrator 2024 28.4 and earlier versions on Windows and macOS.
- Adobe Illustrator 2023 27.9.3 and earlier versions on Windows and macOS.
- Adobe Animate 2023 23.0.5 and earlier versions on Windows and macOS.
- Adobe Animate 2024 24.0.2 and earlier versions on Windows and macOS.
Vendor Multiple Technical summary 14 May, 2024

What has been observed?

There is no evidence of exploitation affecting Western Australian Government networks at the time of publishing.

Recommendation

The WA SOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframe of one month... (refer Patch Management):

Additional References