ZeroHour

CVE-2024-37004

CVSS 3.1
7.8 high
EPSS
<1%p34
Published
()
Modified
Description

A maliciously crafted SLDPRT file, when parsed in ASMKERN229A.dll through Autodesk applications, can cause a use-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

Vendors
autodesk
Products
autocad, autocad architecture, autocad electrical, autocad map 3d, autocad mechanical, autocad mep, autocad plant 3d, civil 3d, advance steel
Weakness
CWE-416
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.