Autodesk 3ds Max: Prepared JPG file can push malicious code onto systems

Autodesk's 3D modeling software 3ds Max is vulnerable. A security update closes vulnerabilities.

listen Print view
A symbolic update button on a keyboard.

(Image: Tatiana Popova/Shutterstock.com)

1 min. read

When Autodesk 3ds Max processes certain files, memory errors can occur. In such a context, attackers can often push and execute malicious code on PCs. The developers have now closed two such security vulnerabilities.

As can be seen from the security section of the Autodesk website, attackers can trigger the malfunction through prepared JPG (CVE-2025-11795 “high”) or DWG files (CVE-2025-11797 “high”).

Version 2026 is threatened by this. The developers assure that they have closed the vulnerabilities in version 2026.3. Even though there are no attacks yet, the developers recommend a prompt update.

(des)

Don't miss any news – follow us on Facebook, LinkedIn or Mastodon.

This article was originally published in German. It was translated with technical assistance and editorially reviewed before publication.