ZeroHour

CVE-2024-23131

CVSS 3.1
7.8 high
EPSS
<1%p42
Published
()
Modified
Description

A maliciously crafted STP file, when parsed in ASMIMPORT229A.dll, ASMKERN228A.dll, ASMkern229A.dll or ASMDATAX228A.dll through Autodesk applications, can lead to a memory corruption vulnerability by write access violation. This vulnerability, in conjunction with other vulnerabilities, can lead to code execution in the context of the current process.

Vendors
autodesk
Products
autocad electrical, autocad mechanical, autocad mep, autocad plant 3d, civil 3d, advance steel, autocad map 3d, autocad, autocad architecture
Weakness
CWE-119
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.