First published: Tue Jun 21 2022(Updated: )
A maliciously crafted JT file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to code execution.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
AutoCAD | =2019 | |
AutoCAD | =2020 | |
AutoCAD | =2021 | |
AutoCAD | =2022 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27867 has a high severity rating due to its potential to allow code execution through a malicious JT file.
To mitigate CVE-2022-27867, update Autodesk AutoCAD to the latest version provided by Autodesk.
CVE-2022-27867 affects Autodesk AutoCAD versions 2019 through 2022.
Yes, CVE-2022-27867 can be exploited remotely if a user opens a specially crafted JT file.
CVE-2022-27867 is a use-after-free vulnerability that can lead to arbitrary code execution.