cbcvebase.
CVE-2024-23138
published 2024-03-18

CVE-2024-23138: A maliciously crafted DWG file when parsed through Autodesk DWG TrueView can be used to cause a Stack-based Overflow. A malicious actor can leverage this…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
A maliciously crafted DWG file when parsed through Autodesk DWG TrueView can be used to cause a Stack-based Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

Affected

57 ranges· showing 25
VendorProductVersion rangeFixed in
autodeskadvance_steel>= 2021 < 2021.1.42021.1.4
autodeskadvance_steel>= 2022 < 2022.1.42022.1.4
autodeskadvance_steel>= 2023 < 2023.1.52023.1.5
autodeskadvance_steel>= 2024 < 2024.1.32024.1.3
autodeskautocad>= 2021 < 2021.1.42021.1.4
autodeskautocad>= 2022 < 2022.1.42022.1.4
autodeskautocad>= 2022 < 2022.4.12022.4.1
autodeskautocad>= 2023 < 2023.1.52023.1.5
autodeskautocad>= 2023 < 2023.3.12023.3.1
autodeskautocad>= 2024 < 2024.1.22024.1.2
autodeskautocad>= 2024 < 2024.1.32024.1.3
autodeskautocad_architecture>= 2021 < 2021.1.42021.1.4
autodeskautocad_architecture>= 2022 < 2022.1.42022.1.4
autodeskautocad_architecture>= 2023 < 2023.1.52023.1.5
autodeskautocad_architecture2023 – 2023.1.5
autodeskautocad_architecture>= 2024 < 2024.1.32024.1.3
autodeskautocad_electrical>= 2021 < 2021.1.42021.1.4
autodeskautocad_electrical>= 2022 < 2022.1.42022.1.4
autodeskautocad_electrical>= 2023 < 2023.1.52023.1.5
autodeskautocad_electrical>= 2024 < 2024.1.32024.1.3
autodeskautocad_lt>= 2021 < 2021.1.42021.1.4
autodeskautocad_lt>= 2022 < 2022.1.42022.1.4
autodeskautocad_lt>= 2022 < 2022.4.12022.4.1
autodeskautocad_lt>= 2023 < 2023.1.52023.1.5
autodeskautocad_lt>= 2023 < 2023.3.12023.3.1