A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. A specially crafted USDC file format path jumps decompression heap overflow in a way path jumps are processed. To trigger this vulnerability, the victim needs to open an attacker-provided malformed file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published: 2020-12-02T17:25:18

Updated: 2024-08-04T12:18:18.279Z

Reserved: 2020-05-26T00:00:00

Link: CVE-2020-13493

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-12-02T18:15:12.243

Modified: 2022-10-05T14:57:35.520

Link: CVE-2020-13493

cve-icon Redhat

No data.