Autodesk 3ds Max Stack-Based Buffer Overflow Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A stack-based buffer overflow vulnerability has been identified in Autodesk 3ds Max 2026. When the application parses a maliciously crafted GIF file, it can lead to memory corruption, allowing for arbitrary code execution in the context of the current process. This vulnerability requires user interaction to exploit.

Impact

Exploitation of this vulnerability can lead to arbitrary code execution in the context of the current process.

Remediation

Users are advised to update to Autodesk 3ds Max 2026.3.2, available through the Autodesk Access application or the Accounts Portal. As a general best practice, only open files from trusted sources.

Added: Feb 4, 2026, 7:21 PM
Updated: Feb 4, 2026, 7:21 PM

Vulnerability Rating

Custom Algorithm
spread
4.2
impact
2.5
exploitability
3.6
remediation
7.7
relevance
2.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.