NULL Pointer Dereference Vulnerability in Substance3D Painter by Adobe
CVE-2026-27218
5.5MEDIUM
What is CVE-2026-27218?
Substance3D Painter versions 11.1.2 and earlier are vulnerable to an exploit that allows attackers to induce a NULL Pointer Dereference, potentially leading to application crashes and service disruption. The successful execution of this attack necessitates user interaction, as the victim must open a specifically crafted malicious file. This vulnerability poses significant risks, and users are advised to apply relevant security updates to safeguard their systems.
Affected Version(s)
Substance3D - Painter 0 <= 11.1.2