CVE-2025-43583
Substance3D - Viewer | NULL Pointer Dereference (CWE-476)
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Substance3D - Viewer versions 0.22 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption in service. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Las versiones 0.22 y anteriores de Substance3D Viewer se ven afectadas por una vulnerabilidad de desreferencia de puntero nulo que podría provocar una denegación de servicio (DSP) en la aplicación. Un atacante podría explotar esta vulnerabilidad para bloquear la aplicación e interrumpir el servicio. Para explotar este problema, es necesario que la víctima abra un archivo malicioso.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2025-04-16 CVE Reserved
- 2025-07-08 CVE Published
- 2025-07-09 CVE Updated
- 2025-07-14 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-476: NULL Pointer Dereference
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://helpx.adobe.com/security/products/substance3d-viewer/apsb25-54.html | 2025-07-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Substance3D - Viewer Search vendor "Adobe" for product "Substance3D - Viewer" | <= 0.22 Search vendor "Adobe" for product "Substance3D - Viewer" and version " <= 0.22" | en |
Affected
|