Substance3D - Stager versions 3.1.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
References
| Link | Resource |
|---|---|
| https://helpx.adobe.com/security/products/substance3d_stager/apsb25-104.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
16 Oct 2025, 17:37
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Apple
Adobe Microsoft Microsoft windows Adobe substance 3d Stager Apple macos |
|
| CPE | cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:a:adobe:substance_3d_stager:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| References | () https://helpx.adobe.com/security/products/substance3d_stager/apsb25-104.html - Vendor Advisory |
14 Oct 2025, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-14 20:15
Updated : 2025-10-16 17:37
NVD link : CVE-2025-61807
Mitre link : CVE-2025-61807
CVE.ORG link : CVE-2025-61807
JSON object : View
Products Affected
apple
- macos
microsoft
- windows
adobe
- substance_3d_stager
CWE
CWE-190
Integer Overflow or Wraparound
