Adobe Patches Code Execution Flaws in Substance 3D Stager

Adobe Patches Code Execution Flaws in Substance 3D Stager

January 9, 2024 at 12:54PM

Adobe released patches for six security vulnerabilities in Substance 3D Stager, warning of potential code execution attacks. The ‘important-severity’ issues affect macOS and Windows users and could lead to memory leaks and arbitrary code execution. Adobe recommends immediate updates to version 2.1.4 to mitigate these risks, with no known in-the-wild exploitation.

From the meeting notes, it was discussed that Adobe has released patches for a number of security vulnerabilities in the Substance 3D Stager product. These vulnerabilities are rated as ‘important-severity’, and Adobe recommends that users on both macOS and Windows platforms apply the updates immediately. The vulnerabilities could potentially lead to memory leak and arbitrary code execution. Adobe has also recommended that users upgrade to Substance 3D Stager version 2.1.4 to address the memory safety issues. It was mentioned that there have been no documented cases of these vulnerabilities being exploited in the wild. Additionally, there were references to other Adobe software vulnerabilities and attacks on various Adobe products.

Full Article