ZDI-CAN-20170: ZDI-23-583: Autodesk 3DS Max USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Autodesk 3DS Max. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20170?
The severity of ZDI-CAN-20170 is classified as medium due to the requirement for user interaction to exploit the vulnerability.
How do I fix ZDI-CAN-20170?
To fix ZDI-CAN-20170, ensure that you are running the latest version of Autodesk 3DS Max, as updates often include patches for known vulnerabilities.
What type of vulnerability is ZDI-CAN-20170?
ZDI-CAN-20170 is an information disclosure vulnerability that allows remote attackers to access sensitive information.
Who is affected by ZDI-CAN-20170?
Users of Autodesk 3DS Max are affected by ZDI-CAN-20170, specifically those who may open malicious pages or files.
What must users do to be vulnerable to ZDI-CAN-20170?
Users must visit a malicious webpage or open a compromised file to exploit the ZDI-CAN-20170 vulnerability.