ZDI-CAN-20173: ZDI-23-582: Autodesk 3DS Max USD File Parsing Uninitialized Pointer Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Autodesk 3DS Max. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20173?
The severity of ZDI-CAN-20173 is considered critical due to the potential for remote attackers to disclose sensitive information.
How do I fix ZDI-CAN-20173?
To fix ZDI-CAN-20173, users should update to the latest version of Autodesk 3DS Max that addresses this vulnerability.
Who is affected by ZDI-CAN-20173?
ZDI-CAN-20173 affects installations of Autodesk 3DS Max where user interaction is required for exploitation.
What types of attacks can exploit ZDI-CAN-20173?
ZDI-CAN-20173 can be exploited by remote attackers through malicious web pages or files that users interact with.
Is user interaction necessary for ZDI-CAN-20173?
Yes, user interaction is necessary for ZDI-CAN-20173 as the target must open a malicious file or visit a malicious page.