First published: Thu Feb 22 2024(Updated: )
A maliciously crafted CATPART file, when parsed in CC5Dll.dll and ASMBASE228A.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
AutoCAD |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-23123 is a critical vulnerability that can lead to potential remote code execution and data corruption.
To mitigate CVE-2024-23123, update Autodesk AutoCAD to the latest version as specified in security advisories.
CVE-2024-23123 affects Autodesk AutoCAD software versions that utilize CC5Dll.dll and ASMBASE228A.dll.
The potential impacts of CVE-2024-23123 include application crashes, data corruption, and execution of arbitrary code.
CVE-2024-23123 was discovered through vulnerability research and disclosed to Autodesk for remediation.