CVE-2024-34121 is an Integer Overflow or Wraparound vulnerability affecting Adobe Illustrator versions 28.6, 27.9.5, and earlier on Windows and macOS. This high-severity vulnerability (CVSS 7.8) could lead to arbitrary code execution if a user opens a specially crafted malicious file. While no public exploits, Metasploit modules, or Nuclei templates are currently available, and there is minimal community discussion, the potential for high impact on confidentiality, integrity, and availability necessitates awareness.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 27.0.0, < 27.9.6CPE matchmatch criteria | cpe:2.3:a:adobe:illustrator:*:*:*:*:*:*:*:* | ||
>= 28.0, < 28.7.1CPE matchmatch criteria | cpe:2.3:a:adobe:illustrator:*:*:*:*:*:*:*:* | ||
>= 0, <= 27.9.5CPE match | cpe:2.3:a:adobe:illustrator:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.