A maliciously crafted 3DM file, when linked or imported into certain Autodesk products, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
| Software | From | Fixed in |
|---|---|---|
| autodesk / shared_components | 2026.2 | 2026.2.x |