Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown

CVE-2023-25002

Disclosure Date: June 27, 2023 (last updated February 25, 2025)
A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.
Attacker Value
Unknown

CVE-2023-25009

Disclosure Date: May 12, 2023 (last updated February 24, 2025)
A malicious actor may convince a user to open a malicious USD file that may trigger an out-of-bounds write vulnerability which could result in code execution.
Attacker Value
Unknown

CVE-2023-25008

Disclosure Date: May 12, 2023 (last updated February 24, 2025)
A malicious actor may convince a user to open a malicious USD file that may trigger an out-of-bounds read vulnerability which could result in code execution.
Attacker Value
Unknown

CVE-2023-25007

Disclosure Date: May 12, 2023 (last updated February 24, 2025)
A malicious actor may convince a user to open a malicious USD file that may trigger an uninitialized pointer which could result in code execution.
Attacker Value
Unknown

CVE-2023-25006

Disclosure Date: May 12, 2023 (last updated February 24, 2025)
A malicious actor may convince a user to open a malicious USD file that may trigger a use-after-free vulnerability which could result in code execution.
Attacker Value
Unknown

CVE-2022-25793

Disclosure Date: August 10, 2022 (last updated February 24, 2025)
A Stack-based Buffer Overflow Vulnerability in Autodesk 3ds Max 2022, 2021, and 2020 may lead to code execution through the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer when parsing ActionScript Byte Code files. This vulnerability may allow arbitrary code execution on affected installations of Autodesk 3ds Max.
Attacker Value
Unknown

CVE-2022-27871

Disclosure Date: June 21, 2022 (last updated February 23, 2025)
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior to 9.1.17 version may be used to write beyond the allocated buffer while parsing PDF files. This vulnerability may be exploited to execute arbitrary code.
Attacker Value
Unknown

CVE-2022-27532

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
A maliciously crafted TIF file in Autodesk 3ds Max 2022 and 2021 can be used to write beyond the allocated buffer while parsing TIF files. This vulnerability in conjunction with other vulnerabilities could lead to arbitrary code execution.
Attacker Value
Unknown

CVE-2022-27531

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
A maliciously crafted TIF file can be forced to read beyond allocated boundaries in Autodesk 3ds Max 2022, and 2021 when parsing the TIF files. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
Attacker Value
Unknown

CVE-2009-3577

Disclosure Date: November 24, 2009 (last updated October 04, 2023)
Autodesk 3D Studio Max (3DSMax) 6 through 9 and 2008 through 2010 allows remote attackers to execute arbitrary code via a .max file with a MAXScript statement that calls the DOSCommand method, related to "application callbacks."
0