CNNVD-202507-1195 Information

CNNVD ID

CNNVD-202507-1195

CVE-2025-27165

  • CNNVD Published: 2025-07-08

Description (Chinese)

Adobe Substance3D是美国奥多比(Adobe)公司的一款 3D 设计软件。 Adobe Substance3D Stager 3.1.2及之前版本存在缓冲区错误漏洞,该漏洞源于越界读取可能导致敏感内存泄露,需要用户交互打开恶意文件。

Description (English)

Adobe Substance3D is a 3D design software for Adobe, United States. Adobe Substance3D Stager 3.1.2 and previous versions had an error loophole in the buffer zone, which stemmed from cross-border reading that could lead to sensitive memory leaks requiring users to cross-open malicious documents.

Hazard Level

High

Vulnerability Type

缓冲区错误

Affected Vendor

奥多比

Published

2025-07-08

Last Modified

2026-02-24

References

https://helpx.adobe.com/security/products/substance3d_stager/apsb25-64.html

Patch

https://helpx.adobe.com/security/products/substance3d_stager/apsb25-64.html

Share on: