CVE-2024-7993Out-of-bounds Write in Revit

Severity
7.8HIGHNVD
EPSS
0.4%
top 41.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 16
Latest updateOct 17

Description

A maliciously crafted PDF file, when parsed through Autodesk Revit, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5autodesk/revit20252025.3+1
NVDautodesk/revit20242024.2.2+1

🔴Vulnerability Details

2
GHSA
GHSA-49mq-c5mf-q7wc: A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write2024-10-17
CVEList
Out-of-Bounds Write Vulnerability in Autodesk Revit2024-10-16
CVE-2024-7993 — Out-of-bounds Write in Autodesk Revit | cvebase