ZDI-CAN-20221: ZDI-23-578: Autodesk 3DS Max USD File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Autodesk 3DS Max. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20221?
ZDI-CAN-20221 is classified as a medium severity vulnerability.
How do I fix ZDI-CAN-20221?
To fix ZDI-CAN-20221, ensure that you update Autodesk 3DS Max to the latest version provided by Autodesk, which contains security patches.
What types of information can be disclosed due to ZDI-CAN-20221?
ZDI-CAN-20221 may allow remote attackers to disclose sensitive information stored on the affected installations of Autodesk 3DS Max.
Is user interaction required to exploit ZDI-CAN-20221?
Yes, user interaction is required for ZDI-CAN-20221 as the target must visit a malicious page or open a malicious file.
Which software is affected by ZDI-CAN-20221?
ZDI-CAN-20221 affects installations of Autodesk 3DS Max.