CVE-2022-27531

HIGH

Autodesk 3ds Max < 2021.3.8 - Out-of-Bounds Read

Title source: rule
STIX 2.1

Description

A maliciously crafted TIF file can be forced to read beyond allocated boundaries in Autodesk 3ds Max 2022, and 2021 when parsing the TIF files. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0034
EPSS Percentile 56.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-125
Status published
Products (1)
autodesk/3ds_max 2021 - 2021.3.8
Published Jun 16, 2022
Tracked Since Feb 18, 2026