ZDI-CAN-20175: ZDI-23-580: Autodesk 3DS Max USD File Parsing Use-After-Free Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Autodesk 3DS Max. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20175?
The severity of ZDI-CAN-20175 is critical due to its ability to allow remote code execution.
How do I fix ZDI-CAN-20175?
To fix ZDI-CAN-20175, you should apply the latest security patches provided by Autodesk for 3DS Max.
Who is affected by ZDI-CAN-20175?
ZDI-CAN-20175 affects installations of Autodesk 3DS Max that are exposed to malicious web pages or files.
What type of attack does ZDI-CAN-20175 enable?
ZDI-CAN-20175 enables remote attackers to execute arbitrary code on the affected system.
Is user interaction required to exploit ZDI-CAN-20175?
Yes, user interaction is required for ZDI-CAN-20175 as the target must visit a malicious page or open a malicious file.