CVE-2021-40160
published 2021-12-23CVE-2021-40160: PDFTron prior to 9.0.7 version may be forced to read beyond allocated boundaries when parsing a maliciously crafted PDF file. This vulnerability can be…
high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
PDFTron prior to 9.0.7 version may be forced to read beyond allocated boundaries when parsing a maliciously crafted PDF file. This vulnerability can be exploited to execute arbitrary code.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| autodesk | advance_steel | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad | >= 2022 < 2022.2 | 2022.2 |
| autodesk | autocad_architecture | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad_electrical | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad_lt | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad_lt | >= 2022 < 2022.2 | 2022.2 |
| autodesk | autocad_map_3d | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad_mechanical | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad_mep | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | autocad_plant_3d | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | civil_3d | >= 2022 < 2022.1.1 | 2022.1.1 |
| autodesk | design_review | — | — |
| autodesk | navisworks | >= 2019 < 2019.6 | 2019.6 |
| autodesk | navisworks | >= 2020 < 2020.4 | 2020.4 |
| autodesk | navisworks | >= 2021 < 2021.3 | 2021.3 |
| autodesk | navisworks | >= 2022 < 2022.1 | 2022.1 |
| autodesk | revit | >= 2020 < 2020.2.5 | 2020.2.5 |
| autodesk | revit | >= 2021 < 2021.1.4 | 2021.1.4 |
| autodesk | revit | >= 2022 < 2022.1 | 2022.1 |