Adobe Substance 3D Sampler是美国奥多比(Adobe)公司的一款摄影测量软件。用于将照片捕捉和扫描图像转换为 3D 纹理和材质资产。 Adobe Substance 3D Sampler 4.5.2版本及之前版本存在安全漏洞,该漏洞源于堆缓冲区溢出问题,可能导致任意代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Substance3D - Sampler | 0 ~ 4.5.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-27178 | 7.8 HIGH | InDesign Desktop | Out-of-bounds Write (CWE-787) |
| CVE-2025-27161 | 7.8 HIGH | Acrobat Reader | Out-of-bounds Read (CWE-125) |
| CVE-2025-27174 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2025-27162 | 7.8 HIGH | Acrobat Reader | Access of Uninitialized Pointer (CWE-824) |
| CVE-2025-27160 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2025-27159 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2025-27158 | 7.8 HIGH | Acrobat Reader | Access of Uninitialized Pointer (CWE-824) |
| CVE-2025-27169 | 7.8 HIGH | Illustrator | Out-of-bounds Write (CWE-787) |
| CVE-2025-27167 | 7.8 HIGH | Illustrator | Untrusted Search Path (CWE-426) |
| CVE-2025-27168 | 7.8 HIGH | Illustrator | Stack-based Buffer Overflow (CWE-121) |
| CVE-2025-27173 | 7.8 HIGH | Substance3D - Modeler | Heap-based Buffer Overflow (CWE-122) |
| CVE-2025-27166 | 7.8 HIGH | InDesign Desktop | Out-of-bounds Write (CWE-787) |
| CVE-2025-27175 | 7.8 HIGH | InDesign Desktop | Out-of-bounds Write (CWE-787) |
| CVE-2025-27177 | 7.8 HIGH | InDesign Desktop | Heap-based Buffer Overflow (CWE-122) |
| CVE-2025-24444 | 7.8 HIGH | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2025-27172 | 7.8 HIGH | Substance3D - Designer | Out-of-bounds Write (CWE-787) |
| CVE-2025-24450 | 7.8 HIGH | Substance3D - Painter | Out-of-bounds Write (CWE-787) |
| CVE-2025-24451 | 7.8 HIGH | Substance3D - Painter | Out-of-bounds Write (CWE-787) |
| CVE-2025-24440 | 7.8 HIGH | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2025-24442 | 7.8 HIGH | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
Showing top 20 of 39 CVEs. View all on vendor page → →
No comments yet