Adobe Substance 3D Sampler vulnerabilities

25 known vulnerabilities affecting adobe/substance_3d_sampler.

Total CVEs
25
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH19MEDIUM6

Vulnerabilities

Page 1 of 2
CVE-2026-21306HIGHCVSS 7.8fixed in 5.1.32026-01-13
CVE-2026-21306 [HIGH] CWE-787 CVE-2026-21306: Substance3D - Sampler versions 5.1.0 and earlier are affected by an out-of-bounds write vulnerabilit Substance3D - Sampler versions 5.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-54205MEDIUMCVSS 5.5fixed in 5.1.02025-08-12
CVE-2025-54205 [MEDIUM] CWE-125 CVE-2025-54205: Substance3D - Sampler versions 5.0.3 and earlier are affected by an out-of-bounds read vulnerability Substance3D - Sampler versions 5.0.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-43581HIGHCVSS 7.8fixed in 5.0.32025-06-10
CVE-2025-43581 [HIGH] CWE-787 CVE-2025-43581: Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-43588HIGHCVSS 7.8fixed in 5.0.32025-06-10
CVE-2025-43588 [HIGH] CWE-787 CVE-2025-43588: Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-24441HIGHCVSS 7.8fixed in 5.02025-03-11
CVE-2025-24441 [HIGH] CWE-787 CVE-2025-24441: Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerabilit Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-24442HIGHCVSS 7.8fixed in 5.02025-03-11
CVE-2025-24442 [HIGH] CWE-787 CVE-2025-24442: Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerabilit Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-24439HIGHCVSS 7.8fixed in 5.02025-03-11
CVE-2025-24439 [HIGH] CWE-122 CVE-2025-24439: Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulner Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-24440HIGHCVSS 7.8fixed in 5.02025-03-11
CVE-2025-24440 [HIGH] CWE-787 CVE-2025-24440: Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerabilit Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-24444HIGHCVSS 7.8fixed in 5.02025-03-11
CVE-2025-24444 [HIGH] CWE-787 CVE-2025-24444: Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerabilit Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-24445HIGHCVSS 7.8fixed in 5.02025-03-11
CVE-2025-24445 [HIGH] CWE-787 CVE-2025-24445: Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerabilit Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2025-24443HIGHCVSS 7.8fixed in 5.02025-03-11
CVE-2025-24443 [HIGH] CWE-122 CVE-2025-24443: Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulner Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52996HIGHCVSS 7.8fixed in 4.5.22024-12-10
CVE-2024-52996 [HIGH] CWE-122 CVE-2024-52996: Substance3D - Sampler versions 4.5.1 and earlier are affected by a Heap-based Buffer Overflow vulner Substance3D - Sampler versions 4.5.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52994HIGHCVSS 7.8fixed in 4.5.22024-12-10
CVE-2024-52994 [HIGH] CWE-787 CVE-2024-52994: Substance3D - Sampler versions 4.5.1 and earlier are affected by an out-of-bounds write vulnerabilit Substance3D - Sampler versions 4.5.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-52995HIGHCVSS 7.8fixed in 4.5.22024-12-10
CVE-2024-52995 [HIGH] CWE-122 CVE-2024-52995: Substance3D - Sampler versions 4.5.1 and earlier are affected by a Heap-based Buffer Overflow vulner Substance3D - Sampler versions 4.5.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-47459MEDIUMCVSS 5.5fixed in 4.5.12024-10-17
CVE-2024-47459 [MEDIUM] CWE-476 CVE-2024-47459: Substance3D - Sampler versions 4.5 and earlier are affected by a NULL Pointer Dereference vulnerabil Substance3D - Sampler versions 4.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition. An attacker could exploit this vulnerability to crash the application, resulting in a DoS. Exploitation of this issue requires user interaction in that a victim must open a malic
nvd
CVE-2024-41862MEDIUMCVSS 5.5fixed in 4.5.12024-08-14
CVE-2024-41862 [MEDIUM] CWE-125 CVE-2024-41862: Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability t Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-41860MEDIUMCVSS 5.5fixed in 4.5.12024-08-14
CVE-2024-41860 [MEDIUM] CWE-125 CVE-2024-41860: Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability t Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-41863MEDIUMCVSS 5.5fixed in 4.5.12024-08-14
CVE-2024-41863 [MEDIUM] CWE-125 CVE-2024-41863: Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability t Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2024-41861MEDIUMCVSS 5.5fixed in 4.5.12024-08-14
CVE-2024-41861 [MEDIUM] CWE-125 CVE-2024-41861: Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability t Substance3D - Sampler versions 4.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-48626HIGHCVSS 7.8≤ 4.2.12023-12-13
CVE-2023-48626 [HIGH] CWE-787 CVE-2023-48626: Adobe Substance 3D Sampler versions 4.2.1 and earlier are affected by an out-of-bounds write vulnera Adobe Substance 3D Sampler versions 4.2.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd