Adobe Substance 3D Viewer Out-of-Bounds Write Vulnerability Leading to Denial-of-Service
Vulnerability
A denial-of-service vulnerability has been identified in Adobe Substance 3D Viewer versions through 0.25.2. This issue arises from an out-of-bounds write, which could cause the application to crash or become unavailable. Exploitation of this vulnerability requires user interaction, as a victim must open a malicious file.
Impact
Exploitation of this vulnerability causes the application to crash or become unavailable, leading to a denial-of-service condition.
Remediation
Users are advised to update Adobe Substance 3D Viewer to version 0.25.3. For managed environments, IT administrators can deploy this update using the Adobe Admin Console.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
