First published: Fri Jul 09 2021(Updated: )
A Double Free vulnerability allows remote attackers to execute arbitrary code on PDF files within affected installations of Autodesk Design Review 2018, 2017, 2013, 2012, 2011. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk Design Review | =2011 | |
Autodesk Design Review | =2012 | |
Autodesk Design Review | =2013 | |
Autodesk Design Review | =2017 | |
Autodesk Design Review | =2018 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27033 is a Double Free vulnerability that allows remote attackers to execute arbitrary code on PDF files within affected installations of Autodesk Design Review 2018, 2017, 2013, 2012, 2011.
CVE-2021-27033 works by exploiting a Double Free vulnerability in the affected versions of Autodesk Design Review, which allows remote attackers to execute arbitrary code on PDF files.
The severity of CVE-2021-27033 is high, with a CVSS score of 7.8.
CVE-2021-27033 can be exploited by tricking the target into visiting a malicious webpage or opening a malicious PDF file.
Yes, updating to the latest version of Autodesk Design Review will fix the CVE-2021-27033 vulnerability.