CVE-2024-10204: Heap-based Buffer Overflow and Uninitialized Variable vulnerabilities exist in eDrawings from Release SOLIDWORKS 2024 through Release SOLIDWORKS 2025
Heap-based Buffer Overflow and Uninitialized Variable vulnerabilities exist in the XB and SAT file reading procedure in eDrawings from Release SOLIDWORKS 2024 through Release SOLIDWORKS 2025. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted XB or SAT file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10204?
CVE-2024-10204 has a high severity rating due to the potential for remote code execution.
How do I fix CVE-2024-10204?
To fix CVE-2024-10204, ensure you update to the latest version of SOLIDWORKS eDrawings.
What types of vulnerabilities are present in CVE-2024-10204?
CVE-2024-10204 includes heap-based buffer overflow and uninitialized variable vulnerabilities.
Which versions of SOLIDWORKS eDrawings are affected by CVE-2024-10204?
CVE-2024-10204 affects SOLIDWORKS eDrawings from version 2024 to version 2025.
Can CVE-2024-10204 allow an attacker to execute code?
Yes, CVE-2024-10204 could allow an attacker to execute arbitrary code when opening affected files.