CVE-2026-75766

Summary

Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Affected Software

VendorProductVersion RangeStatus
AdobeAdobe Substance 3D Painter0 <= 12.1.2affected
AdobeAdobe Substance 3D Painter12.1.3unaffected

Weaknesses

  • CWE-122: Heap-based Buffer Overflow (CWE-122)

References