CVE-2026-21340: Substance3D - Designer | Out-of-bounds Read (CWE-125)
Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21340?
CVE-2026-21340 is classified as a moderate severity vulnerability due to its potential for memory exposure.
How do I fix CVE-2026-21340?
To remediate CVE-2026-21340, upgrade Substance3D - Designer to version 15.1.1 or later.
What versions of Substance3D - Designer are affected by CVE-2026-21340?
Substance3D - Designer versions 15.1.0 and earlier are affected by CVE-2026-21340.
What type of vulnerability is CVE-2026-21340?
CVE-2026-21340 is an out-of-bounds read vulnerability that can result in memory exposure.
What could an attacker achieve by exploiting CVE-2026-21340?
An attacker could leverage CVE-2026-21340 to disclose sensitive information stored in memory.