CVE-2023-27909: High severity autodesk fbx sdk vulnerability
Published Apr 17, 2023
·Updated
An Out-Of-Bounds Write Vulnerability in Autodesk® FBX® SDK version 2020 or prior may lead to code execution through maliciously crafted FBX files or information disclosure.
Other sources
AutoDesk: CVE-2023-27909 Out-Of-Bounds Write Vulnerability in Autodesk® FBX® SDK 2020 or prior
— Microsoft
Affected Software
15 affected componentsFixes available
Autodesk FBX Software Development Kit>=2020.0<2020.3.4
Microsoft Office 2019 for 32-bit editions
Microsoft Office 2019 for 64-bit editions
Microsoft Office LTSC 2021 for 64-bit editions
Microsoft Office LTSC 2021 for 32-bit editions
Microsoft Visual Studio 2019 (includes 16.0 - 16.10)=16.11
Microsoft Visual Studio 2017 (includes 15.0 - 15.8)=15.9
Microsoft 3D Viewer
Microsoft Visual Studio 2015=3
Microsoft Visual Studio 2013=5
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps for Enterprise
Microsoft Visual Studio 2022=17.2
Microsoft Visual Studio 2022=17.6
Microsoft Visual Studio 2022=17.0
Event History
Apr 17, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 13, 2023
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-27909?
CVE-2023-27909 is an Out-Of-Bounds Write Vulnerability in Autodesk FBX SDK 2020 or prior.
2
What is the severity of CVE-2023-27909?
CVE-2023-27909 has a severity level of 7, which is considered high.
3
Which software are affected by CVE-2023-27909?
The affected software includes Autodesk FBX SDK 2020 or prior.
4
How can I fix CVE-2023-27909?
To fix CVE-2023-27909, update to a version of Autodesk FBX SDK that is 2021 or later.
5
Where can I find more information about CVE-2023-27909?
You can find more information about CVE-2023-27909 on the Microsoft Security Response Center website.