CVE-2026-0661: Out-of-Bounds Write in RGB File Parsing
A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0661?
CVE-2026-0661 is considered a critical vulnerability due to its potential for memory corruption and arbitrary code execution.
How do I fix CVE-2026-0661?
To fix CVE-2026-0661, update Autodesk 3ds Max to the latest version that incorporates patches for this vulnerability.
What symptoms may indicate CVE-2026-0661 has been exploited?
Symptoms of exploitation may include unexpected crashes or unresponsive behavior when opening certain RGB files in Autodesk 3ds Max.
Who is affected by CVE-2026-0661?
Users of Autodesk 3ds Max versions prior to 2026.3.2 are affected by CVE-2026-0661.
Can CVE-2026-0661 be exploited remotely?
Yes, CVE-2026-0661 can be exploited if a user opens a malicious RGB file, potentially leading to arbitrary code execution.