PT-2025-39171 · Autodesk · Autodesk Revit

Published

2025-09-23

·

Updated

2025-11-10

·

CVE-2025-8354

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Autodesk Revit (affected versions not specified)
Description A specially designed RFA file, when processed by Autodesk Revit, can lead to a Type Confusion condition. An attacker could potentially exploit this to cause the application to crash, corrupt data, or execute code with the same privileges as the current process.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Type Confusion

Weakness Enumeration

Related Identifiers

CVE-2025-8354
ZDI-25-907

Affected Products

Autodesk Revit