Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-13493

A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. A specially crafted USDC file format path jumps decompression heap overflow in a way path jumps are processed. To trigger this vulnerability, the victim needs to open an attacker-provided malformed file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.8%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.8
Products affected by CVE-2020-13493
  • Pixar » Openusd » Version: 20.05
    cpe:2.3:a:pixar:openusd:20.05
  • Apple » Macos » Version: N/A
    cpe:2.3:o:apple:macos:-


Contact Us

Shodan ® - All rights reserved