CVE-2012-2052: Adobe Photoshop CS5

High severity, CVSS 9.3. EPSS: 23.3% chance of exploitation in the next 30 days.

Stack-based buffer overflow in the U3D.8BI library plugin in Adobe Photoshop CS5 12.x before 12.0.5 and CS5.1 12.1.x before 12.1.1 allows remote attackers to execute arbitrary code via a long Collada asset element in a DAE file, as demonstrated by the cameraYFov value in the contributor comments element.

Affected products

  • Adobe Photoshop CS5: version 12.0 only; version 12.0.1 only; version 12.0.2 only; version 12.0.3 only; version 12.0.4 only
  • Adobe Photoshop CS5.1: version 12.1 only

Published 2014-06-19. Last modified 2026-06-16.