First published: Tue Nov 19 2024(Updated: )
Heap-based Buffer Overflow and Uninitialized Variable vulnerabilities exist in the X_B and SAT file reading procedure in eDrawings from Release SOLIDWORKS 2024 through Release SOLIDWORKS 2025. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted X_B or SAT file.
Credit: 3DS.Information-Security@3ds.com
Affected Software | Affected Version | How to fix |
---|---|---|
SOLIDWORKS eDrawings | >=2024<=2025 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-10204 has a high severity rating due to the potential for remote code execution.
To fix CVE-2024-10204, ensure you update to the latest version of SOLIDWORKS eDrawings.
CVE-2024-10204 includes heap-based buffer overflow and uninitialized variable vulnerabilities.
CVE-2024-10204 affects SOLIDWORKS eDrawings from version 2024 to version 2025.
Yes, CVE-2024-10204 could allow an attacker to execute arbitrary code when opening affected files.