Home

Description

An issue in Sublime HQ Pty Ltd Sublime Text 4 4200 allows authenticated attackers with low-level privileges to escalate privileges to Administrator via replacing the uninstall file with a crafted binary in the installation folder. NOTE: this is disputed by the Supplier because replacing the uninstall file requires administrator permissions, i.e., there is no privilege escalation.

PUBLISHED Reserved 2025-08-17 | Published 2025-11-10 | Updated 2025-11-17 | Assigner mitre

References

drive.google.com/...L9ocNOucioIqxOgzreZ6Ey7/view?usp=sharing

drive.google.com/...-Gi_8jkHJKi7QV1Tajqh4WT/view?usp=sharing

github.com/secxplorers/CVE-2025-56503

cve.org (CVE-2025-56503)

nvd.nist.gov (CVE-2025-56503)

Download JSON