Description
Substance3D - Viewer versions 0.25 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Problem types
Heap-based Buffer Overflow (CWE-122)
Product status
Any version
References
helpx.adobe.com/...roducts/substance3d-viewer/apsb25-72.html