CVE-2019-7363: Use After Free
Use-after-free vulnerability in Autodesk Design Review versions 2011, 2012, 2013, and 2018. An attacker may trick a user into opening a malicious DWF file that may leverage a use-after-free vulnerability, which may result in code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-7363?
CVE-2019-7363 is a use-after-free vulnerability in Autodesk Design Review versions 2011, 2012, 2013, and 2018 that can be exploited to execute arbitrary code.
What is the severity of CVE-2019-7363?
The severity of CVE-2019-7363 is high with a CVSS score of 7.8.
How does the use-after-free vulnerability in Autodesk Design Review versions 2011, 2012, 2013, and 2018 work?
The vulnerability occurs when an attacker tricks a user into opening a malicious DWF file that leverages the use-after-free vulnerability, allowing the attacker to execute arbitrary code.
Which versions of Autodesk Design Review are affected by CVE-2019-7363?
CVE-2019-7363 affects Autodesk Design Review versions 2011, 2012, 2013, and 2018.
How can I fix CVE-2019-7363?
To fix CVE-2019-7363, update Autodesk Design Review to a version that has patched the vulnerability and avoid opening or accessing malicious DWF files.