CVE-2026-0538: GIF File Parsing Out-of-Bounds Write
A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0538?
CVE-2026-0538 is considered a high-severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2026-0538?
To fix CVE-2026-0538, you should update Autodesk 3ds Max to the latest version that addresses this vulnerability.
What is the impact of CVE-2026-0538?
The impact of CVE-2026-0538 is that it allows a malicious actor to execute arbitrary code by exploiting the out-of-bounds write during GIF file parsing.
Which versions of Autodesk 3ds Max are affected by CVE-2026-0538?
Versions of Autodesk 3ds Max from 2026 to 2026.3.2 are affected by CVE-2026-0538.
How can an attacker exploit CVE-2026-0538?
An attacker can exploit CVE-2026-0538 by crafting a malicious GIF file and persuading a user to open it in Autodesk 3ds Max.