PT-2022-21886 · Autodesk · Autodesk Autocad

Published

2022-09-29

·

Updated

2022-10-07

·

CVE-2022-33884

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Autodesk AutoCAD versions 2022 through 2023
Description The issue arises when parsing a maliciously crafted X B file, which can cause Autodesk AutoCAD to read beyond allocated boundaries. This could potentially lead to code execution in the context of the current process when combined with other vulnerabilities.
Recommendations For Autodesk AutoCAD versions 2022 and 2023, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2022-33884
ZDI-22-1308
ZDI-22-1311
ZDI-22-1314
ZDI-22-1315
ZDI-22-1316

Affected Products

Autodesk Autocad