CVE-2022-42943: High severity Autodesk AutoCAD vulnerability
A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this memory corruption vulnerability?
The vulnerability ID for this memory corruption vulnerability is CVE-2022-42943.
How does this memory corruption vulnerability occur?
This memory corruption vulnerability occurs when a malicious crafted dwf or .pct file is consumed through the DesignReview.exe application.
What is the severity of CVE-2022-42943?
The severity of CVE-2022-42943 is high.
Which software products are affected by CVE-2022-42943?
The software products affected by CVE-2022-42943 include Autodesk AutoCAD, Autodesk AutoCAD Advance Steel, Autodesk AutoCAD Architecture, Autodesk AutoCAD Civil 3D, Autodesk AutoCAD Electrical, Autodesk AutoCAD LT, Autodesk AutoCAD Map 3D, Autodesk AutoCAD Mechanical, Autodesk AutoCAD MEP, and Autodesk AutoCAD Plant 3D.
How can I fix CVE-2022-42943?
To fix CVE-2022-42943, it is recommended to apply the security update provided by Autodesk. Please refer to the reference link for more information.