First published: Mon Apr 17 2023(Updated: )
A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds read vulnerability which may result in code execution.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk Maya | <0.23.0 | |
<0.23.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-27906.
The severity of CVE-2023-27906 is high, with a CVSS score of 7.8.
The software affected by CVE-2023-27906 is Autodesk Maya USD version up to exclusive 0.23.0.
CVE-2023-27906 may result in code execution due to an out-of-bounds read vulnerability.
To mitigate CVE-2023-27906, it is recommended to update to a version of Autodesk Maya USD above 0.23.0.