ZDI-23-581: Autodesk 3DS Max USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Autodesk 3DS Max. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-581?
The severity of ZDI-23-581 is classified as moderate due to the requirement of user interaction for exploitation.
How do I fix ZDI-23-581?
To fix ZDI-23-581, ensure that you update Autodesk 3DS Max to the latest version provided by the vendor.
What type of information can be disclosed due to ZDI-23-581?
ZDI-23-581 allows the disclosure of sensitive information from affected installations of Autodesk 3DS Max.
Are all versions of Autodesk 3DS Max affected by ZDI-23-581?
Yes, all versions of Autodesk 3DS Max are susceptible to the issues presented by ZDI-23-581.
What conditions must be met for ZDI-23-581 to be exploited?
To exploit ZDI-23-581, the target user must visit a malicious website or open a malicious file.