First published: Wed Jan 25 2017(Updated: )
Improper handling in the Autodesk FBX-SDK before 2017.1 of type mismatches and previously deleted objects related to reading and converting malformed FBX format files can allow attackers to gain access to uninitialized pointers.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk FBX SDK | <=2017.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9305 is classified as a high severity vulnerability due to improper handling of type mismatches.
To mitigate CVE-2016-9305, upgrade to Autodesk FBX SDK version 2017.1 or later.
Attackers can exploit CVE-2016-9305 to gain access to uninitialized pointers by processing malformed FBX files.
CVE-2016-9305 affects all versions of Autodesk FBX SDK prior to 2017.1.
Users of Autodesk FBX SDK should immediately upgrade to version 2017.1 or later to avoid potential exploitation of CVE-2016-9305.