CVE-2026-21338: Substance3D - Designer | NULL Pointer Dereference (CWE-476)
Substance3D - Designer versions 15.1.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption to services. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21338?
CVE-2026-21338 has a high severity level due to its potential to cause denial-of-service in the affected application.
How do I fix CVE-2026-21338?
To fix CVE-2026-21338, upgrade Substance3D Designer to version 15.1.1 or later, where the vulnerability is addressed.
What software versions are affected by CVE-2026-21338?
CVE-2026-21338 affects Substance3D Designer versions 15.1.0 and earlier.
What type of vulnerability is CVE-2026-21338?
CVE-2026-21338 is classified as a NULL Pointer Dereference vulnerability (CWE-476).
What impact does CVE-2026-21338 have on users?
Exploitation of CVE-2026-21338 may lead to application crashes, resulting in denial-of-service for users.