A maliciously crafted STP file in ASMKERN228A.dll when parsed through Autodesk applications can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
History

Mon, 27 Jan 2025 18:30:00 +0000

Type Values Removed Values Added
Description A maliciously crafted STP file in ASMKERN228A.dll when parsed through Autodesk AutoCAD can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process. A maliciously crafted STP file in ASMKERN228A.dll when parsed through Autodesk applications can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
Title Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H'}

cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: autodesk

Published:

Updated: 2025-02-03T15:44:07.671Z

Reserved: 2024-01-11T21:47:40.857Z

Link: CVE-2024-23136

cve-icon Vulnrichment

Updated: 2024-08-01T22:59:30.674Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-02-22T05:15:09.527

Modified: 2025-01-27T19:15:15.900

Link: CVE-2024-23136

cve-icon Redhat

No data.