ZeroHour

CVE-2024-23135

CVSS 3.1
7.8 high
EPSS
<1%p40
Published
()
Modified
Description

A maliciously crafted SLDPRT file in ASMkern228A.dll when parsed through Autodesk applications can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

Vendors
autodesk
Products
autocad, autocad architecture, autocad electrical, autocad mechanical, autocad mep, autocad plant 3d, civil 3d, advance steel, autocad map 3d
Weakness
CWE-416
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.