Out-of-Bounds Read Vulnerability in Substance3D Designer by Adobe
CVE-2025-21168
What is CVE-2025-21168?
An out-of-bounds read vulnerability exists in versions 14.1 and earlier of Substance3D Designer by Adobe. This security flaw could allow attackers to disclose sensitive memory information. Exploitation requires user interaction, as it necessitates the opening of a specially crafted malicious file. If successful, an attacker may bypass security mitigations like Address Space Layout Randomization (ASLR), potentially leading to further exploitation. It is advised that users remain vigilant and apply necessary security patches to minimize risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Substance3D - Designer 0 <= 14.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved