CVE-2023-25010
published 2023-04-17CVE-2023-25010: A malicious actor may convince a victim to open a malicious USD file that may trigger an uninitialized variable which may result in code execution.
high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
A malicious actor may convince a victim to open a malicious USD file that may trigger an uninitialized variable which may result in code execution.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| autodesk | maya_usd | < 0.23.0 | 0.23.0 |