cbcvebase.
CVE-2023-25010
published 2023-04-17

CVE-2023-25010: A malicious actor may convince a victim to open a malicious USD file that may trigger an uninitialized variable which may result in code execution.

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
A malicious actor may convince a victim to open a malicious USD file that may trigger an uninitialized variable which may result in code execution.

Affected

1 ranges
VendorProductVersion rangeFixed in
autodeskmaya_usd< 0.23.00.23.0