Autodesk Autocad Lt vulnerabilities
85 known vulnerabilities affecting autodesk/autocad_lt.
Total CVEs
85
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH78MEDIUM2LOW1
Vulnerabilities
Page 2 of 5
CVE-2024-23138HIGHCVSS 7.8≥ 2021, < 2021.1.4≥ 2022, < 2022.1.4+5 more2024-03-18
CVE-2024-23138 [HIGH] CWE-121 CVE-2024-23138: A maliciously crafted DWG file when parsed through Autodesk DWG TrueView can be used to cause a Stac
A maliciously crafted DWG file when parsed through Autodesk DWG TrueView can be used to cause a Stack-based Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
cvelistv5nvd
CVE-2023-29076CRITICALCVSS 9.8fixed in 2023.1.4fixed in 2024.1+1 more2023-11-23
CVE-2023-29076 [CRITICAL] CWE-119 CVE-2023-29076: A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 a
A maliciously crafted MODEL, SLDASM, SAT or CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 could cause memory corruption vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
nvd
CVE-2023-29075CRITICALCVSS 9.8fixed in 2023.1.4fixed in 2024.1+1 more2023-11-23
CVE-2023-29075 [CRITICAL] CWE-787 CVE-2023-29075: A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cau
A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds Write. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2023-29073CRITICALCVSS 9.8fixed in 2023.1.4fixed in 2024.1+1 more2023-11-23
CVE-2023-29073 [CRITICAL] CWE-122 CVE-2023-29073: A maliciously crafted MODEL file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to c
A maliciously crafted MODEL file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2023-29074CRITICALCVSS 9.8fixed in 2023.1.4fixed in 2024.1+1 more2023-11-23
CVE-2023-29074 [CRITICAL] CWE-787 CVE-2023-29074: A maliciously crafted CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to
A maliciously crafted CATPART file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause an Out-Of-Bounds Write. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2023-41140HIGHCVSS 7.8fixed in 2023.1.4fixed in 2024.1+1 more2023-11-23
CVE-2023-41140 [HIGH] CWE-122 CVE-2023-41140: A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cau
A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2023-41139HIGHCVSS 7.8fixed in 2023.1.4fixed in 2024.1+1 more2023-11-23
CVE-2023-41139 [HIGH] CWE-822 CVE-2023-41139: A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to der
A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
nvd
CVE-2023-25004HIGHCVSS 7.8≥ 2020, < 2020.1.6≥ 2021, < 2021.1.3+2 more2023-06-27
CVE-2023-25004 [HIGH] CWE-190 CVE-2023-25004: A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vul
A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of these vulnerabilities may lead to code execution.
nvd
CVE-2023-29068HIGHCVSS 7.8≥ 2020, < 2020.1.6≥ 2021, < 2021.1.3+2 more2023-06-27
CVE-2023-29068 [HIGH] CWE-787 CVE-2023-29068: A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulner
A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabilities in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd
CVE-2023-25003HIGHCVSS 7.8≥ 2020, < 2020.1.6≥ 2021, < 2021.1.3+2 more2023-06-23
CVE-2023-25003 [HIGH] CWE-125 CVE-2023-25003: A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigge
A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution.
nvd
CVE-2023-27914HIGHCVSS 7.8≥ 2023, < 2023.1.32023-04-14
CVE-2023-27914 [HIGH] CWE-787 CVE-2023-27914: A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to write beyo
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to write beyond the allocated buffer causing a Stack Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code in the context of the current process.
nvd
CVE-2023-27913HIGHCVSS 7.8≥ 2023, < 2023.1.32023-04-14
CVE-2023-27913 [HIGH] CWE-190 CVE-2023-27913: A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to cause an I
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to cause an Integer Overflow. A malicious actor can leverage this vulnerability to cause a crash or read sensitive data, or execute arbitrary code in the context of the current process.
nvd
CVE-2023-27915HIGHCVSS 7.8≥ 2023, < 2023.1.32023-04-14
CVE-2023-27915 [HIGH] CWE-787 CVE-2023-27915: A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corr
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd
CVE-2023-29067HIGHCVSS 7.8≥ 2023, < 2023.1.32023-04-14
CVE-2023-29067 [HIGH] CWE-787 CVE-2023-29067: A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corr
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd
CVE-2023-27912HIGHCVSS 7.8≥ 2023, < 2023.1.32023-04-14
CVE-2023-27912 [HIGH] CWE-125 CVE-2023-27912: A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can force an Out-of-Bound
A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can force an Out-of-Bound Read. A malicious actor can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code in the context of the current process.
nvd
CVE-2022-42936HIGHCVSS 7.8v2019v2020+3 more2022-10-21
CVE-2022-42936 [HIGH] CWE-787 CVE-2022-42936: A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead
A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd
CVE-2022-42940HIGHCVSS 7.8v2019v2020+3 more2022-10-21
CVE-2022-42940 [HIGH] CWE-787 CVE-2022-42940: A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory
A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory corruption vulnerability. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd
CVE-2022-42943HIGHCVSS 7.8v2019v2020+3 more2022-10-21
CVE-2022-42943 [HIGH] CWE-787 CVE-2022-42943: A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead t
A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd
CVE-2022-42942HIGHCVSS 7.8v2019v2020+3 more2022-10-21
CVE-2022-42942 [HIGH] CWE-787 CVE-2022-42942: A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead t
A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd
CVE-2022-42937HIGHCVSS 7.8v2019v2020+3 more2022-10-21
CVE-2022-42937 [HIGH] CWE-787 CVE-2022-42937: A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead
A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
nvd