Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23877 | A maliciously crafted TGA file, when linked or imported into Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. |
Thu, 26 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
ssvc
|
Tue, 19 Aug 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Autodesk 3ds Max
|
|
| CPEs | cpe:2.3:a:autodesk:3ds_Max:2026.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Autodesk 3ds Max
|
|
| References |
|
Wed, 13 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:autodesk:3ds_max:*:*:*:*:*:*:*:* |
Thu, 07 Aug 2025 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Autodesk
Autodesk 3ds Max |
|
| Vendors & Products |
Autodesk
Autodesk 3ds Max |
Wed, 06 Aug 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 06 Aug 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A maliciously crafted TGA file, when linked or imported into Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process. | |
| Title | TGA File Parsing Memory Corruption Vulnerability | |
| Weaknesses | CWE-120 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: autodesk
Published:
Updated: 2026-02-26T17:49:51.082Z
Reserved: 2025-06-25T13:44:06.564Z
Link: CVE-2025-6634
Updated: 2025-08-06T20:50:26.377Z
Status : Analyzed
Published: 2025-08-06T21:15:32.250
Modified: 2025-11-13T20:03:24.913
Link: CVE-2025-6634
No data.
OpenCVE Enrichment
Updated: 2025-08-07T07:08:24Z
EUVD