Vulnerability Details CVE-2024-39385
Premiere Pro versions 24.5, 23.6.8 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.1%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2024-39385
-
cpe:2.3:a:adobe:premiere_pro:-
-
cpe:2.3:a:adobe:premiere_pro:14.1
-
cpe:2.3:a:adobe:premiere_pro:14.2
-
cpe:2.3:a:adobe:premiere_pro:14.4
-
cpe:2.3:a:adobe:premiere_pro:15.4
-
cpe:2.3:a:adobe:premiere_pro:15.4.1
-
cpe:2.3:a:adobe:premiere_pro:15.4.2
-
cpe:2.3:a:adobe:premiere_pro:15.4.3
-
cpe:2.3:a:adobe:premiere_pro:24.0
-
-
cpe:2.3:o:microsoft:windows:-