Heap-based Buffer Overflow in Adobe Bridge Affects Multiple Versions
CVE-2025-54268

7.8HIGH

Key Information:

Vendor

Adobe

Status
Vendor
CVE Published:
15 October 2025

What is CVE-2025-54268?

Adobe Bridge versions 14.1.8, 15.1.1, and earlier are susceptible to a heap-based buffer overflow vulnerability. This flaw could enable an attacker to execute arbitrary code within the user's context, effectively compromising their system. Successful exploitation requires that a user interacts with a malicious file, highlighting the significant risks associated with untrusted documents. Organizations and users should update their software to mitigate potential attacks leveraging this vulnerability.

Affected Version(s)

Bridge 0 <= 14.1.8, 15.1.1

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-54268 : Heap-based Buffer Overflow in Adobe Bridge Affects Multiple Versions