CVE-2023-27906: High severity autodesk maya vulnerability
Published Apr 17, 2023
·Updated
A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds read vulnerability which may result in code execution.
Affected Software
1 affected component
Autodesk Maya Usd<0.23.0
Event History
Apr 17, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-27906.
2
What is the severity of CVE-2023-27906?
The severity of CVE-2023-27906 is high, with a CVSS score of 7.8.
3
Which software is affected by CVE-2023-27906?
The software affected by CVE-2023-27906 is Autodesk Maya USD version up to exclusive 0.23.0.
4
What is the potential impact of CVE-2023-27906?
CVE-2023-27906 may result in code execution due to an out-of-bounds read vulnerability.
5
How can I mitigate CVE-2023-27906?
To mitigate CVE-2023-27906, it is recommended to update to a version of Autodesk Maya USD above 0.23.0.