Beveiligingsadvies

CVE-2020-6155

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-11-13 14:38:51
Laatst bijgewerkt 2024-08-04 08:55:21
Toegewezen door talos
CVSS-score 8.8
Status PUBLISHED

Beschrijving

A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays in binary USD files. A specially crafted malformed file can trigger a heap overflow, which can result in remote code execution. To trigger this vulnerability, the victim needs to access an attacker-provided malformed file.