CVE-2024-23139

Severity
7.8HIGH
EPSS
0.1%
top 78.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 18

Description

A maliciously crafted ABC file, when parsed through Autodesk FBX, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5autodesk/fbx_review1.5.3.01.5.4.0

🔴Vulnerability Details

2
GHSA
GHSA-mfrg-mc7h-8xrw: An Out-Of-Bounds Write Vulnerability in Autodesk FBX Review version 12024-03-18
CVEList
ActionScript Byte Code “ABC” Vulnerability in the Autodesk FBX Review software2024-03-17
CVE-2024-23139 (HIGH CVSS 7.8) | A maliciously crafted ABC file | cvebase.io