CVE-2025-61834: Substance3D - Stager | Use After Free (CWE-416)
Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-61834?
CVE-2025-61834 is classified as a critical severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2025-61834?
To resolve CVE-2025-61834, users should upgrade to Substance3D Stager version 3.1.6 or later.
What are the consequences of exploiting CVE-2025-61834?
Exploiting CVE-2025-61834 can lead to arbitrary code execution in the context of the current user, allowing attackers to potentially gain full control.
Who is affected by CVE-2025-61834?
CVE-2025-61834 affects users of Substance3D Stager versions 3.1.5 and earlier.
Is user interaction required to exploit CVE-2025-61834?
Yes, exploitation of CVE-2025-61834 requires user interaction as the victim must open a malicious file.