First published: Mon Dec 09 2024(Updated: )
A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Read. A malicious actor can leverage this vulnerability to cause a crash or could lead to an arbitrary memory leak.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk Revit Architecture |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11268 is classified as a critical vulnerability due to its potential to cause application crashes and memory leaks.
To mitigate CVE-2024-11268, update Autodesk Revit to the latest version as provided in the security advisories.
An attacker can exploit CVE-2024-11268 by using a malicious PDF to trigger an Out-of-Bounds Read, resulting in application crashes or memory leaks.
CVE-2024-11268 affects Autodesk Revit, particularly concerning its PDF parsing functionality.
Yes, exploitation of CVE-2024-11268 requires user interaction to open the maliciously crafted PDF file.