Maya Usd
by Autodesk
CVEs (7)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-29068 | Hig | 0.51 | 7.8 | 0.00 | Jun 27, 2023 | A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabilities in conjunction with other vulnerabilities could lead to code execution in the context of the current process. | ||
| CVE-2023-25004 | Hig | 0.51 | 7.8 | 0.00 | Jun 27, 2023 | A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of these vulnerabilities may lead to code execution. | ||
| CVE-2023-25003 | Hig | 0.51 | 7.8 | 0.00 | Jun 23, 2023 | A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution. | ||
| CVE-2023-27907 | Hig | 0.51 | 7.8 | 0.00 | Apr 17, 2023 | A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds write vulnerability which may result in code execution. | ||
| CVE-2023-27906 | Hig | 0.51 | 7.8 | 0.00 | Apr 17, 2023 | A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds read vulnerability which may result in code execution. | ||
| CVE-2023-25010 | Hig | 0.51 | 7.8 | 0.00 | Apr 17, 2023 | A malicious actor may convince a victim to open a malicious USD file that may trigger an uninitialized variable which may result in code execution. | ||
| CVE-2025-4605 | Med | 0.43 | 6.6 | 0.00 | Jun 11, 2025 | A maliciously crafted .usdc file, when loaded through Autodesk Maya, can force an uncontrolled memory allocation vulnerability. A malicious actor may leverage this vulnerability to cause a denial-of-service (DoS), or cause data corruption. |
- risk 0.51cvss 7.8epss 0.00
A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabilities in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
- risk 0.51cvss 7.8epss 0.00
A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of these vulnerabilities may lead to code execution.
- risk 0.51cvss 7.8epss 0.00
A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution.
- risk 0.51cvss 7.8epss 0.00
A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds write vulnerability which may result in code execution.
- risk 0.51cvss 7.8epss 0.00
A malicious actor may convince a victim to open a malicious USD file that may trigger an out-of-bounds read vulnerability which may result in code execution.
- risk 0.51cvss 7.8epss 0.00
A malicious actor may convince a victim to open a malicious USD file that may trigger an uninitialized variable which may result in code execution.
- risk 0.43cvss 6.6epss 0.00
A maliciously crafted .usdc file, when loaded through Autodesk Maya, can force an uncontrolled memory allocation vulnerability. A malicious actor may leverage this vulnerability to cause a denial-of-service (DoS), or cause data corruption.