Stack-based Buffer Overflow Vulnerability in Adobe Illustrator
CVE-2025-49564

7.8HIGH

Key Information:

Vendor

Adobe

Vendor
CVE Published:
12 August 2025

What is CVE-2025-49564?

Adobe Illustrator versions 28.7.8, 29.6.1 and earlier are exposed to a stack-based buffer overflow vulnerability. This issue can allow an attacker to execute arbitrary code with the permissions of the current user. The exploitation requires user interaction, as the victim must open a specially crafted malicious file. Users are advised to remain cautious and apply necessary security measures to mitigate the potential risks associated with this vulnerability. For further details, refer to Adobe's official security advisory.

Affected Version(s)

Illustrator 0 <= 29.6.1

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.