ZDI-23-578: Autodesk 3DS Max USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Autodesk 3DS Max. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-578?
The severity of ZDI-23-578 is currently classified as medium, due to its potential for sensitive information disclosure.
How do I fix ZDI-23-578?
To remediate ZDI-23-578, ensure that you update Autodesk 3DS Max to the latest version provided by Autodesk.
What type of information can be disclosed due to ZDI-23-578?
ZDI-23-578 allows remote attackers to disclose sensitive information stored within affected installations of Autodesk 3DS Max.
Does exploiting ZDI-23-578 require user interaction?
Yes, exploiting ZDI-23-578 requires user interaction, as the target must visit a malicious page or open a malicious file.
Which software is affected by ZDI-23-578?
ZDI-23-578 affects Autodesk 3DS Max installations.