CVE-2023-41140: Buffer Overflow
A maliciously crafted PRT file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to cause a Heap-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-41140?
CVE-2023-41140 is a vulnerability associated with Autodesk AutoCAD 2024 and 2023 that can be exploited through a maliciously crafted PRT file to cause a Heap-Based Buffer Overflow, leading to a crash, unauthorized data access, or arbitrary code execution.
How severe is CVE-2023-41140?
CVE-2023-41140 has a severity rating of 7.8 (high).
Which software versions are affected by CVE-2023-41140?
Autodesk AutoCAD versions 2024.1 and prior, as well as versions 2023.0.0 to 2023.1.4, are affected by CVE-2023-41140.
How can CVE-2023-41140 be exploited?
CVE-2023-41140 can be exploited by parsing a maliciously crafted PRT file through Autodesk AutoCAD 2024 and 2023.
How can I mitigate the risk of CVE-2023-41140?
To mitigate the risk of CVE-2023-41140, it is recommended to update to the latest version of Autodesk AutoCAD or apply the necessary patches provided by Autodesk.