PT-2026-7425 · Adobe · Substance3D - Stager
Michele Damico
·
Published
2026-02-10
·
Updated
2026-02-11
·
CVE-2026-21344
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Substance3D - Stager versions 3.1.6 and earlier
Description
The software contains an out-of-bounds read issue when processing a specially designed file. This could allow an attacker to execute code with the privileges of the current user. User interaction is needed, as a user must open a malicious file for exploitation to occur.
Recommendations
Versions prior to 3.1.6 are affected.
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Substance3D - Stager