CVE-2015-8572: Buffer Overflow
Published Dec 15, 2015
·Updated
Multiple buffer overflows in Autodesk Design Review (ADR) before 2013 Hotfix 2 allow remote attackers to execute arbitrary code via crafted RLE data in a (1) BMP or (2) FLI file, (3) encoded scan lines in a PCX file, or (4) DataSubBlock or (5) GlobalColorTable in a GIF file.
Affected Software
1 affected component
Autodesk Design Review=2013
Event History
Dec 15, 2015
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-8572?
CVE-2015-8572 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2015-8572?
To mitigate CVE-2015-8572, install Autodesk Design Review 2013 Hotfix 2 or a later version.
3
What types of files are affected by CVE-2015-8572?
CVE-2015-8572 affects BMP, FLI, PCX, and GIF files containing crafted RLE data.
4
Who is impacted by CVE-2015-8572?
Users of Autodesk Design Review versions prior to 2013 Hotfix 2 are at risk from CVE-2015-8572.
5
What attack vectors are exploited in CVE-2015-8572?
CVE-2015-8572 can be exploited via malicious files containing specially crafted image data.