Out-of-bounds Read Vulnerability in Substance3D Modeler by Adobe
CVE-2025-54199

5.5MEDIUM

Key Information:

Vendor

Adobe

Vendor
CVE Published:
12 August 2025

What is CVE-2025-54199?

An out-of-bounds read vulnerability exists in Substance3D Modeler versions 1.22.0 and earlier. This flaw can lead to the unintended disclosure of sensitive memory contents. To exploit this vulnerability, an attacker must entice a user into opening a specifically crafted malicious file, which can expose sensitive information stored in memory.

Affected Version(s)

Substance3D - Modeler 0 <= 1.22.0

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-54199 : Out-of-bounds Read Vulnerability in Substance3D Modeler by Adobe