Cisco Blog >Threat Research

Threat Research

This vulnerability was discovered by Tyler Bohan of Cisco Talos.

Walt Disney PTEX is an open source software application maintained by Walt Disney Animation Studios. It is designed for use in post-production rendering. It allows for the storage of thousands of texture mappings within a single file. This particular software library is in many other software applications such as Pixar's RenderMan, giving it a large install base. A list of other applications that have incorporated PTEX is available here. Talos has recently discovered a stack-based buffer overflow in PTEX that could potentially allow a remote attacker to execute arbitrary code on affected systems.

Read More »

Cisco Systems Inc. published this content on 26 January 2018 and is solely responsible for the information contained herein.
Distributed by Public, unedited and unaltered, on 26 January 2018 16:09:08 UTC.

Original documenthttps://blogs.cisco.com/security/talos/vulnerability-spotlight-walt-disney-per-face-texture-mapping-faceinfosize-code-execution-vulnerability

Public permalinkhttp://www.publicnow.com/view/41579D8AC233411140F8EED79C5F1653C40BFDB8