PT-2023-27819 · Autodesk · Autodesk Autocad

Published

2023-09-19

·

Updated

2023-11-30

·

CVE-2023-41139

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Autodesk AutoCAD versions 2023 through 2024
Description A maliciously crafted STP file can be used to dereference an untrusted pointer when parsed through the affected software. This issue could lead to code execution in the current process.
Recommendations For Autodesk AutoCAD versions 2023 and 2024, update to a version that includes a fix for the untrusted pointer dereference issue to prevent potential code execution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Untrusted Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2023-41139
ZDI-23-1440

Affected Products

Autodesk Autocad