CVE-2025-61802: Substance3D - Stager | Use After Free (CWE-416)
Substance3D - Stager versions 3.1.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-61802?
CVE-2025-61802 has a high severity rating due to its potential for arbitrary code execution.
How do I fix CVE-2025-61802?
To resolve CVE-2025-61802, update Substance3D Stager to version 3.1.5 or later.
What is a Use After Free vulnerability as seen in CVE-2025-61802?
A Use After Free vulnerability occurs when a program continues to use a pointer after the memory it refers to has been freed, which can lead to exploitation.
What versions of Substance3D Stager are affected by CVE-2025-61802?
Versions 3.1.4 and earlier of Substance3D Stager are affected by CVE-2025-61802.
What is required for the exploitation of CVE-2025-61802?
Exploitation of CVE-2025-61802 requires user interaction, such as opening a malicious file.