A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 04 Feb 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | |
| Title | Out-of-Bounds Write in RGB File Parsing | |
| First Time appeared |
Autodesk
Autodesk 3ds Max |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:autodesk:3ds_max:2026:*:*:*:*:*:*:* | |
| Vendors & Products |
Autodesk
Autodesk 3ds Max |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: autodesk
Published:
Updated: 2026-02-04T16:54:29.773Z
Reserved: 2026-01-06T19:58:23.903Z
Link: CVE-2026-0661
No data.
Status : Received
Published: 2026-02-04T17:16:12.947
Modified: 2026-02-04T17:16:12.947
Link: CVE-2026-0661
No data.
OpenCVE Enrichment
No data.
Weaknesses