PT-2024-7762 · Autodesk · Autodesk Autocad

Published

2024-02-21

·

Updated

2025-11-13

·

CVE-2024-23152

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Autodesk AutoCAD (affected versions not specified)
Description The issue is related to the opennurbs.dll library in Autodesk AutoCAD, which is vulnerable to an out-of-bounds read when parsing specially crafted 3DM files. This can allow an attacker to cause the application to crash, read sensitive data, or execute arbitrary code in the context of the current process.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2024-09253
CVE-2024-23152
ZDI-24-788
ZDI-24-791
ZDI-24-797
ZDI-24-960

Affected Products

Autodesk Autocad