PT-2024-7526 · Autodesk · Autodesk Autocad

Published

2024-08-22

·

Updated

2024-11-01

·

CVE-2024-8596

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Autodesk AutoCAD (affected versions not specified)
Description The issue is related to a maliciously crafted MODEL file that, when parsed, may cause an Out-of-Bounds Write. This could allow a malicious actor to cause a crash, data corruption, or execute arbitrary code in the context of the current process. Exploitation of the vulnerability may also enable an attacker to gain unauthorized access to protected information or cause a denial of service using a specially crafted MODEL file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2024-08923
CVE-2024-8596
ZDI-24-1438

Affected Products

Autodesk Autocad