Out-of-Bounds Read Vulnerability in Substance3D Modeler by Adobe
CVE-2025-54202

5.5MEDIUM

Key Information:

Vendor

Adobe

Vendor
CVE Published:
12 August 2025

What is CVE-2025-54202?

Substance3D Modeler, developed by Adobe, is susceptible to an out-of-bounds read vulnerability present in version 1.22.0 and earlier. This security flaw could allow an attacker to disclose sensitive memory contents if the victim opens a specially crafted malicious file. It emphasizes the importance of user awareness and cautious behavior when handling potentially harmful files. Users of affected versions should assess their exposure and consider security measures.

Affected Version(s)

Substance3D - Modeler 0 <= 1.22.0

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.