CVE-2026-7450

A maliciously crafted PAR file, when parsed through Autodesk 3ds Max, can force a NULL Pointer Dereference vulnerability. Successful exploitation may cause the application to crash, leading to a denial-of-service condition.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:autodesk:3ds_max:2026:*:*:*:*:*:*:*
cpe:2.3:a:autodesk:3ds_max:2027:*:*:*:*:*:*:*

History

03 Jun 2026, 14:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : 5.5

26 May 2026, 20:41

Type Values Removed Values Added
CPE cpe:2.3:a:autodesk:3ds_max:2027:*:*:*:*:*:*:*
cpe:2.3:a:autodesk:3ds_max:2026:*:*:*:*:*:*:*
References () https://www.autodesk.com/products/autodesk-access/overview - () https://www.autodesk.com/products/autodesk-access/overview - Product
References () https://www.autodesk.com/trust/security-advisories/adsk-sa-2026-0006 - () https://www.autodesk.com/trust/security-advisories/adsk-sa-2026-0006 - Vendor Advisory
First Time Autodesk 3ds Max
Autodesk

26 May 2026, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-26 18:16

Updated : 2026-06-03 14:16


NVD link : CVE-2026-7450

Mitre link : CVE-2026-7450

CVE.ORG link : CVE-2026-7450


JSON object : View

Products Affected

autodesk

  • 3ds_max
CWE
CWE-476

NULL Pointer Dereference