CVE-2025-10888: MODEL File Parsing Out-of-Bounds Write Vulnerability
AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10888?
CVE-2025-10888 is classified as a critical severity vulnerability due to its potential to allow arbitrary code execution.
How do I fix CVE-2025-10888?
To fix CVE-2025-10888, update your Autodesk software to the latest version provided by Autodesk that includes the security patch.
What types of attacks can exploit CVE-2025-10888?
CVE-2025-10888 can be exploited by a malicious actor through crafted MODEL files to cause crashes, data corruption, or execute arbitrary code.
What products are affected by CVE-2025-10888?
CVE-2025-10888 affects several Autodesk products that process MODEL files.
What should I do if I am using affected Autodesk products?
If using affected Autodesk products, monitor for updates from Autodesk and apply any patches or updates as soon as they are available.