CVE-2025-30312: Dimension | Out-of-bounds Write (CWE-787)
Published Jul 8, 2025
·Updated
Dimension versions 4.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
4 affected components
Dimension Dimension<=4.1.2
All of the following
Adobe Dimension<4.1.3
Any of the following
Apple macOS
Microsoft Windows
Event History
Jul 8, 2025
CVE Published
via MITRE·05:29 PM
Data Sourced
via MITRE·05:29 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-30312?
CVE-2025-30312 is classified as a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2025-30312?
To remediate CVE-2025-30312, upgrade to a version of Dimension later than 4.1.2.
3
What type of attacks can be executed due to CVE-2025-30312?
CVE-2025-30312 allows attackers to execute arbitrary code if a user opens a malicious file.
4
What versions of Dimension are affected by CVE-2025-30312?
Dimension versions up to and including 4.1.2 are affected by CVE-2025-30312.
5
What is required for the exploitation of CVE-2025-30312?
Exploitation of CVE-2025-30312 requires user interaction, specifically opening a crafted file.