CVE-2024-23136
—CVSS 3.1
7.8 high
EPSS
<1%p37
Published
()
Modified
Description
A maliciously crafted STP file in ASMKERN228A.dll when parsed through Autodesk applications can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
- Vendors
- autodesk
- Products
- autocad electrical, autocad mechanical, autocad mep, autocad plant 3d, civil 3d, advance steel, autocad map 3d, autocad, autocad architecture
- Weakness
- CWE-822
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.