CVE-2022-25792: Buffer Overflow
A maliciously crafted DXF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 and Autodesk Navisworks 2022 can be used to write beyond the allocated buffer through Buffer overflow vulnerability. This vulnerability can be exploited to execute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25792?
CVE-2022-25792 is a vulnerability that allows a maliciously crafted DXF file to be used to write beyond the allocated buffer in Autodesk AutoCAD 2022, 2021, 2020, 2019, and Autodesk Navisworks 2022, potentially allowing for the execution of arbitrary code.
Which software versions are affected by CVE-2022-25792?
Autodesk Advance Steel (2019.1.4 - 2022.1.2) and Autodesk AutoCAD (2019.1.4 - 2022.2.2) are affected by CVE-2022-25792.
What is the severity of CVE-2022-25792?
The severity of CVE-2022-25792 is rated as high, with a CVSS score of 7.8.
How can CVE-2022-25792 be exploited?
CVE-2022-25792 can be exploited by using a maliciously crafted DXF file in Autodesk AutoCAD or Autodesk Navisworks to write beyond the allocated buffer, potentially leading to the execution of arbitrary code.
Is there a fix for CVE-2022-25792?
To mitigate CVE-2022-25792, it is recommended to install the latest security updates provided by Autodesk for the affected software versions.