VYPR
High severity7.8NVD Advisory· Published Aug 10, 2022· Updated Jun 17, 2026

CVE-2022-25793

CVE-2022-25793

Description

A Stack-based Buffer Overflow Vulnerability in Autodesk 3ds Max 2022, 2021, and 2020 may lead to code execution through the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer when parsing ActionScript Byte Code files. This vulnerability may allow arbitrary code execution on affected installations of Autodesk 3ds Max.

Affected products

3
  • Autodesk/3ds Max3 versions
    cpe:2.3:a:autodesk:3ds_max:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:autodesk:3ds_max:*:*:*:*:*:*:*:*range: >=2020,<2020.3.6
    • (no CPE)
    • (no CPE)range: 2022, 2021, and 2020

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.