Show filters
21 Total Results
Displaying 11-20 of 21
Sort by:
Attacker Value
Unknown

CVE-2024-23152

Disclosure Date: June 25, 2024 (last updated June 25, 2024)
A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bounds Read. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
0
Attacker Value
Unknown

CVE-2024-37002

Disclosure Date: June 25, 2024 (last updated June 25, 2024)
A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
0
Attacker Value
Unknown

CVE-2024-23137

Disclosure Date: February 22, 2024 (last updated June 25, 2024)
A maliciously crafted STP or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.
0
Attacker Value
Unknown

CVE-2024-23129

Disclosure Date: February 22, 2024 (last updated June 25, 2024)
A maliciously crafted MODEL 3DM, STP, or SLDASM file, when in opennurbs.dll parsed through Autodesk applications, can lead to a memory corruption vulnerability by write access violation. This vulnerability, in conjunction with other vulnerabilities, can lead to code execution in the context of the current process.
0
Attacker Value
Unknown

CVE-2024-23128

Disclosure Date: February 22, 2024 (last updated June 25, 2024)
A maliciously crafted MODEL file, when parsed in libodxdll.dll and ASMDATAX229A.dll through Autodesk applications, can lead to a memory corruption vulnerability by write access violation. This vulnerability, in conjunction with other vulnerabilities, can lead to code execution in the context of the current process.
0
Attacker Value
Unknown

CVE-2024-23127

Disclosure Date: February 22, 2024 (last updated June 25, 2024)
A maliciously crafted MODEL, SLDPRT, or SLDASM file, when parsed in ODXSW_DLL.dll and libodxdll.dll through Autodesk applications, can be used to cause a Heap-based Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
0
Attacker Value
Unknown

CVE-2021-40166

Disclosure Date: October 07, 2022 (last updated February 24, 2025)
A maliciously crafted PNG file in Autodesk Image Processing component may be used to attempt to free an object that has already been freed while parsing them. This vulnerability may be exploited by attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2021-40165

Disclosure Date: October 07, 2022 (last updated February 24, 2025)
A maliciously crafted TIFF, PICT, TGA, or RLC file in Autodesk Image Processing component may be used to write beyond the allocated buffer while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
Attacker Value
Unknown

CVE-2021-40164

Disclosure Date: October 07, 2022 (last updated February 24, 2025)
A heap-based buffer overflow could occur while parsing TIFF, PICT, TGA, or RLC files. This vulnerability may be exploited to execute arbitrary code.
Attacker Value
Unknown

CVE-2021-40163

Disclosure Date: October 07, 2022 (last updated February 24, 2025)
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through Autodesk Image Processing component.