CVE-2025-54244: Substance3D - Viewer | Heap-based Buffer Overflow (CWE-122)
Substance3D - Viewer versions 0.25.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54244?
CVE-2025-54244 is classified as a critical vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2025-54244?
To mitigate CVE-2025-54244, users should upgrade Substance3D Viewer to version 0.25.2 or later.
What types of systems are affected by CVE-2025-54244?
CVE-2025-54244 affects all systems running Substance3D Viewer versions 0.25.1 and earlier.
What actions should users avoid to prevent exploitation of CVE-2025-54244?
Users should avoid opening untrusted or malicious files in Substance3D Viewer to minimize the risk of exploitation.
Is user interaction required to exploit CVE-2025-54244?
Yes, exploitation of CVE-2025-54244 requires user interaction, as a victim must open a malicious file.