cbcvebase.
CVE-2025-1276
published 2025-04-15

CVE-2025-1276: A maliciously crafted DWG file, when parsed through certain Autodesk applications, can force an Out-of-Bounds Write vulnerability. A malicious actor may…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
A maliciously crafted DWG file, when parsed through certain Autodesk applications, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

Affected

47 ranges· showing 25
VendorProductVersion rangeFixed in
autodeskadvance_steel>= 2023 < 2023.1.72023.1.7
autodeskadvance_steel>= 2024 < 2024.1.72024.1.7
autodeskadvance_steel>= 2025 < 2025.1.22025.1.2
autodeskautocad>= 2023 < 2023.1.72023.1.7
autodeskautocad>= 2024 < 2024.1.72024.1.7
autodeskautocad>= 2025 < 2025.1.22025.1.2
autodeskautocad_architecture>= 2023 < 2023.1.72023.1.7
autodeskautocad_architecture>= 2024 < 2024.1.72024.1.7
autodeskautocad_architecture>= 2025 < 2025.1.22025.1.2
autodeskautocad_electrical>= 2023 < 2023.1.72023.1.7
autodeskautocad_electrical>= 2024 < 2024.1.72024.1.7
autodeskautocad_electrical>= 2025 < 2025.1.22025.1.2
autodeskautocad_lt>= 2023 < 2023.1.72023.1.7
autodeskautocad_lt>= 2024 < 2024.1.72024.1.7
autodeskautocad_lt>= 2025 < 2025.1.22025.1.2
autodeskautocad_map_3d>= 2023 < 2023.1.72023.1.7
autodeskautocad_map_3d>= 2024 < 2024.1.72024.1.7
autodeskautocad_map_3d>= 2025 < 2025.1.22025.1.2
autodeskautocad_mechanical>= 2023 < 2023.1.72023.1.7
autodeskautocad_mechanical>= 2024 < 2024.1.72024.1.7
autodeskautocad_mechanical>= 2025 < 2025.1.22025.1.2
autodeskautocad_mep>= 2023 < 2023.1.72023.1.7
autodeskautocad_mep>= 2024 < 2024.1.72024.1.7
autodeskautocad_mep>= 2025 < 2025.1.22025.1.2
autodeskautocad_plant_3d>= 2023 < 2023.1.72023.1.7