Buffer Overflow Vulnerability in Autodesk 3ds Max
CVE-2022-27531

7.8HIGH

Key Information:

Vendor
Autodesk
Vendor
CVE Published:
16 June 2022

Summary

A buffer overflow vulnerability exists in Autodesk 3ds Max 2022 and 2021, allowing an attacker to exploit the application by crafting a malicious TIF file. This vulnerability enables an attacker to read beyond allocated memory boundaries while processing TIF files, potentially leading to unauthorized code execution within the context of the running process. This issue may be exploited in conjunction with other vulnerabilities for heightened attack efficacy.

Affected Version(s)

Autodesk 3ds Max 2020, 2021

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.