Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2025-01-14 CVE-2024-48854 Off-by-one Error vulnerability in Blackberry QNX Software Development Platform 7.0/7.1/8.0
Off-by-one error in the TIFF image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause an information disclosure in the context of the process using the image codec.
network
low complexity
blackberry CWE-193
7.5
2025-01-14 CVE-2024-48855 Out-of-bounds Read vulnerability in Blackberry QNX Software Development Platform 7.0/7.1/8.0
Out-of-bounds read in the TIFF image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause an information disclosure in the context of the process using the image codec.
network
low complexity
blackberry CWE-125
7.5
2025-01-14 CVE-2024-48857 NULL Pointer Dereference vulnerability in Blackberry QNX Software Development Platform 7.0/7.1/8.0
NULL pointer dereference in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause a denial-of-service condition in the context of the process using the image codec.
network
low complexity
blackberry CWE-476
7.5
2025-01-14 CVE-2025-21122 Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
CWE-191
7.8
2025-01-14 CVE-2025-21127 Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could lead to arbitrary code execution.
local
low complexity
CWE-427
7.8
2025-01-14 CVE-2025-21128 Out-of-bounds Write vulnerability in Adobe Substance 3D Stager
Substance3D - Stager versions 3.0.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2025-01-14 CVE-2025-21129 Out-of-bounds Write vulnerability in Adobe Substance 3D Stager
Substance3D - Stager versions 3.0.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2025-01-14 CVE-2025-21130 Out-of-bounds Write vulnerability in Adobe Substance 3D Stager
Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2025-01-14 CVE-2025-21131 Out-of-bounds Write vulnerability in Adobe Substance 3D Stager
Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8
2025-01-14 CVE-2025-21132 Out-of-bounds Write vulnerability in Adobe Substance 3D Stager
Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-787
7.8