Autodesk 3ds Max Memory Corruption Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A memory corruption vulnerability has been identified in Autodesk 3ds Max 2026. When the application parses a maliciously crafted RGB file, it can lead to memory corruption. This vulnerability allows a malicious actor to execute arbitrary code within the context of the current process.

Impact

Exploitation of this vulnerability can lead to memory corruption, allowing for arbitrary code execution in the context of the current process.

Remediation

Users are advised to update to Autodesk 3ds Max 2026.3.2, available through Autodesk Access or the Accounts Portal.

Added: Feb 4, 2026, 6:41 PM
Updated: Feb 4, 2026, 6:41 PM

Vulnerability Rating

Custom Algorithm
spread
4.2
impact
7.5
exploitability
3.6
remediation
7.7
relevance
2.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.