CVE-2021-40163: High severity Autodesk AutoCAD vulnerability
Published Oct 7, 2022
·Updated
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through Autodesk Image Processing component.
Affected Software
88 affected components
Autodesk AutoCAD>=2019<2019.1.4
Autodesk AutoCAD>=2020<2020.1.5
Autodesk AutoCAD>=2021<2021.1.2
Autodesk AutoCAD>=2022<2022.1.2
Autodesk Autocad Advance Steel>=2019<2019.1.4
Autodesk Autocad Advance Steel>=2020<2020.1.5
Autodesk Autocad Advance Steel>=2021<2021.1.2
Autodesk Autocad Advance Steel>=2022<2022.1.2
Autodesk AutoCAD Architecture>=2019<2019.1.4
Autodesk AutoCAD Architecture>=2020<2020.1.5
Autodesk AutoCAD Architecture>=2021<2021.1.2
Autodesk AutoCAD Architecture>=2022<2022.1.2
Autodesk Autocad Civil 3d>=2019<2019.1.4
Autodesk Autocad Civil 3d>=2020<2020.1.5
Autodesk Autocad Civil 3d>=2021<2021.1.2
Autodesk Autocad Civil 3d>=2022<2022.1.2
Autodesk AutoCAD Electrical>=2019<2019.1.4
Autodesk AutoCAD Electrical>=2020<2020.1.5
Autodesk AutoCAD Electrical>=2021<2021.1.2
Autodesk AutoCAD Electrical>=2022<2022.1.2
Autodesk AutoCAD LT>=2019<2019.1.4
Autodesk AutoCAD LT>=2020<2020.1.5
Autodesk Autocad Lt Macos>=2020<2020.3.2
Autodesk AutoCAD LT>=2021<2021.1.2
Autodesk Autocad Lt Macos>=2021<2021.2.2
Autodesk AutoCAD LT>=2022<2022.1.2
Autodesk Autocad Lt Macos>=2022<2022.2.2
Autodesk AutoCAD Map 3D>=2019<2019.1.4
Autodesk AutoCAD Map 3D>=2020<2020.1.5
Autodesk AutoCAD Map 3D>=2021<2021.1.2
Autodesk AutoCAD Map 3D>=2022<2022.1.2
Autodesk AutoCAD Mechanical>=2019<2019.1.4
Autodesk AutoCAD Mechanical>=2020<2020.1.5
Autodesk AutoCAD Mechanical>=2021<2021.1.2
Autodesk AutoCAD Mechanical>=2022<2022.1.2
Autodesk AutoCAD MEP>=2019<2019.1.4
Autodesk AutoCAD MEP>=2020<2020.1.5
Autodesk AutoCAD MEP>=2021<2021.1.2
Autodesk AutoCAD MEP>=2022<2022.1.2
Autodesk AutoCAD Plant 3D>=2019<2019.1.4
Autodesk AutoCAD Plant 3D>=2020<2020.1.5
Autodesk AutoCAD Plant 3D>=2021<2021.1.2
Autodesk AutoCAD Plant 3D>=2022<2022.1.2
Autodesk Design Review=2018
Autodesk Design Review=2018-hotfix
Autodesk Design Review=2018-hotfix2
Autodesk Design Review=2018-hotfix3
Autodesk DWG TrueView>=2019<2019.1.4
Autodesk DWG TrueView>=2020<2020.1.5
Autodesk DWG TrueView>=2021<2021.1.2
Autodesk DWG TrueView>=2022<2022.1.1
Autodesk Fusion>=2.0.10356<2.0.11405
Autodesk Infrastructure Parts Editor>=2019<2019.2.2
Autodesk Infrastructure Parts Editor>=2020<2020.0.2
Autodesk Infrastructure Parts Editor=2021
Autodesk Infrastructure Parts Editor=2022
Autodesk InfraWorks>=2019<2019.3
Autodesk InfraWorks>=2020<2020.2
Autodesk InfraWorks>=2021<2021.2
Autodesk InfraWorks=2019.3
Autodesk InfraWorks=2019.3-hotfix_1
Autodesk InfraWorks=2019.3-hotfix_2
Autodesk InfraWorks=2019.3-hotfix_3
Autodesk InfraWorks=2020.2
Autodesk InfraWorks=2020.2-hotfix_1
Autodesk InfraWorks=2020.2-hotfix_2
Autodesk InfraWorks=2021.2
Autodesk InfraWorks=2021.2-hotfix_1
Autodesk InfraWorks=2021.2-hotfix_2
Autodesk InfraWorks=2022.0
Autodesk InfraWorks=2022.0-hotfix_1
Autodesk InfraWorks=2022.1
Autodesk Inventor>=2019<2019.6
Autodesk Inventor>=2020<2020.5
Autodesk Inventor>=2021<2021.4
Autodesk Inventor>=2022<2022.2
Autodesk Navisworks>=2019<2019.7
Autodesk Navisworks>=2020<2020.5
Autodesk Navisworks>=2021<2021.4
Autodesk Navisworks>=2022<2022.2
Autodesk Revit>=2019<2019.2.4
Autodesk Revit>=2020<2020.2.6
Autodesk Revit>=2021<2021.1.5
Autodesk Revit=2022
Autodesk Storm And Sanitary Analysis>=2020<2020.3.1
Autodesk Storm And Sanitary Analysis>=2021<2021.3.1
Autodesk Storm And Sanitary Analysis=2019
Autodesk Storm And Sanitary Analysis=2022
Event History
Oct 7, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-40163?
CVE-2021-40163 has been rated as critical due to the potential for code execution through memory corruption.
2
How do I fix CVE-2021-40163?
To mitigate CVE-2021-40163, update the affected software to the latest version that addresses the vulnerability.
3
Which software versions are affected by CVE-2021-40163?
CVE-2021-40163 affects multiple Autodesk products, including AutoCAD versions 2019 to 2022 and several other Autodesk design software components.
4
What can happen if CVE-2021-40163 is exploited?
Exploitation of CVE-2021-40163 could lead to unauthorized code execution on affected systems.
5
Is there a workaround for CVE-2021-40163 if I cannot update immediately?
Currently, no specific workarounds are provided for CVE-2021-40163, and applying the necessary updates is strongly recommended.