First published: Fri Jun 23 2023(Updated: )
A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk | >=2023<2023.1.1 | |
Autodesk AutoCAD 2024 | >=2020<2020.1.6 | |
Autodesk AutoCAD 2024 | >=2021<2021.1.3 | |
Autodesk AutoCAD 2024 | >=2022<2022.1.3 | |
Autodesk AutoCAD 2024 | >=2023<2023.1.1 | |
Autodesk AutoCAD Advance Steel | >=2020<2020.1.6 | |
Autodesk AutoCAD Advance Steel | >=2021<2021.1.3 | |
Autodesk AutoCAD Advance Steel | >=2022<2022.1.3 | |
Autodesk AutoCAD Advance Steel | >=2023<2023.1.1 | |
AutoCAD | >=2020<2020.1.6 | |
AutoCAD | >=2021<2021.1.3 | |
AutoCAD | >=2022<2022.1.3 | |
AutoCAD | >=2023<2023.1.1 | |
Autodesk Civil 3D | >=2020<2020.1.6 | |
Autodesk Civil 3D | >=2021<2021.1.3 | |
Autodesk Civil 3D | >=2022<2022.1.3 | |
Autodesk Civil 3D | >=2023<2023.1.1 | |
AutoCAD | >=2020<2020.1.6 | |
AutoCAD | >=2021<2021.1.3 | |
AutoCAD | >=2022<2022.1.3 | |
AutoCAD | >=2023<2023.1.1 | |
Autodesk AutoCAD LT 2017 | >=2020<2020.1.6 | |
Autodesk AutoCAD LT 2017 | >=2021<2021.1.3 | |
Autodesk AutoCAD LT 2017 | >=2022<2022.1.3 | |
Autodesk AutoCAD LT 2017 | >=2023<2023.1.1 | |
AutoCAD | >=2020<2020.1.6 | |
AutoCAD | >=2021<2021.1.3 | |
AutoCAD | >=2022<2022.1.3 | |
AutoCAD | >=2023<2023.1.1 | |
AutoCAD | >=2020<2020.1.6 | |
AutoCAD | >=2021<2021.1.3 | |
AutoCAD | >=2022<2022.1.3 | |
AutoCAD | >=2023<2023.1.1 | |
AutoCAD | >=2020<2020.1.6 | |
AutoCAD | >=2021<2021.1.3 | |
AutoCAD | >=2022<2022.1.3 | |
AutoCAD | >=2023<2023.1.1 | |
AutoCAD | >=2020<2020.1.6 | |
AutoCAD | >=2021<2021.1.3 | |
AutoCAD | >=2022<2022.1.3 | |
AutoCAD | >=2023<2023.1.1 | |
Autodesk InfraWorks | >=2021<2021.2 | |
Autodesk InfraWorks | >=2022<2022.1 | |
Autodesk InfraWorks | >=2023<2023.1 | |
Autodesk Inventor | >=2021<2021.5 | |
Autodesk Inventor | >=2022<2022.4 | |
Autodesk Inventor | >=2023<2023.3.1 | |
Autodesk Maya | >=2022<2022.5 | |
Autodesk Maya | >=2023<2023.3 | |
Autodesk Navisworks | >=2022<2022.4 | |
Autodesk Navisworks | >=2023<2023.2 | |
Autodesk Revit 2025 | >=2021<2021.1.8 | |
Autodesk | >=2023<2023.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25003 is classified as critical due to its potential for code execution.
To fix CVE-2023-25003, update Autodesk AutoCAD and Maya to the latest versions available.
CVE-2023-25003 affects Autodesk AutoCAD 2023, Maya 2022, and several other Autodesk products.
Yes, exploitation of CVE-2023-25003 may lead to unauthorized access and potential data compromise.
Exploitation of CVE-2023-25003 may result in unexpected application behavior or crashes.