ZeroHour

CVE-2024-37002

CVSS 3.1
7.8 high
EPSS
<1%p32
Published
()
Modified
Description

A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

Vendors
autodesk
Products
autocad, autocad architecture, autocad electrical, autocad map 3d, autocad mechanical, autocad mep, autocad plant 3d, civil 3d, advance steel
Weakness
CWE-457, CWE-908
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.