CVE-2024-12179: DWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop Software
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12179?
The severity of CVE-2024-12179 is considered high due to its potential to allow arbitrary code execution.
How do I fix CVE-2024-12179?
To fix CVE-2024-12179, update Autodesk Navisworks to the latest version provided by Autodesk.
What types of attacks can exploit CVE-2024-12179?
CVE-2024-12179 can be exploited through specially crafted DWFX files that cause heap-based overflows.
What products are affected by CVE-2024-12179?
CVE-2024-12179 specifically affects Autodesk Navisworks.
What are the potential impacts of CVE-2024-12179?
The potential impacts of CVE-2024-12179 include application crash, exposure of sensitive data, and execution of arbitrary code.