CVE-2025-54278

Published Oct 15, 2025

Last updated 5 months ago

Overview

Description
Bridge versions 14.1.8, 15.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Source
psirt@adobe.com
NVD status
Analyzed
Products
bridge

Risk scores

CVSS 3.1

Type
Primary
Base score
5.5
Impact score
3.6
Exploitability score
1.8
Vector string
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Severity
MEDIUM

Weaknesses

psirt@adobe.com
CWE-122

Social media

Hype score
Not currently trending

Configurations

References

Sources include official advisories and independent security research.