CVE-2024-11422: DWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop Software
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11422?
CVE-2024-11422 is classified as a high-severity vulnerability due to its potential for data corruption and arbitrary code execution.
How do I fix CVE-2024-11422?
To mitigate CVE-2024-11422, ensure you update Autodesk Navisworks to the latest version provided by Autodesk.
What type of vulnerability is CVE-2024-11422?
CVE-2024-11422 is an Out-of-Bounds Write vulnerability triggered by parsing a maliciously crafted DWFX file.
What can attackers achieve using CVE-2024-11422?
Attackers can use CVE-2024-11422 to crash the application, corrupt data, or execute arbitrary code in the context of the current process.
Which software is affected by CVE-2024-11422?
CVE-2024-11422 affects Autodesk Navisworks, making it crucial for users of this software to take necessary precautions.