CVE-2014-3939: Buffer Overflow
Published Jul 23, 2014
·Updated
Heap-based buffer overflow in Autodesk SketchBook Pro before 6.2.6 allows remote attackers to execute arbitrary code via crafted layer bitmap data in a PXD file.
Affected Software
2 affected components
Autodesk SketchBook Pro<=6.2.5
Autodesk SketchBook Pro=6.2.4
Event History
Jul 23, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-3939?
CVE-2014-3939 has a CVSS score indicating a high severity due to the potential for remote code execution.
2
How do I fix CVE-2014-3939?
To fix CVE-2014-3939, upgrade Autodesk SketchBook Pro to version 6.2.6 or later.
3
What types of files are involved in CVE-2014-3939?
CVE-2014-3939 involves PXD files that contain crafted layer bitmap data, leading to the buffer overflow.
4
Who is affected by CVE-2014-3939?
CVE-2014-3939 affects users of Autodesk SketchBook Pro versions prior to 6.2.6.
5
What can attackers do with CVE-2014-3939?
Attackers can exploit CVE-2014-3939 to execute arbitrary code on a victim's system by sending malicious PXD files.