First published: Thu Feb 22 2024(Updated: )
A maliciously crafted CATPART file when parsed CC5Dll.dll through Autodesk applications can be used to cause a Stack-based Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk AutoCAD 2024 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-23126 is considered a high severity vulnerability due to its ability to cause a stack-based overflow.
To mitigate CVE-2024-23126, ensure that you apply any available security updates or patches from Autodesk for AutoCAD.
CVE-2024-23126 can facilitate attacks allowing a malicious actor to crash the application, read sensitive data, or execute arbitrary code.
CVE-2024-23126 affects Autodesk AutoCAD 2024 when handling maliciously crafted CATPART files.
If you suspect exploitation of CVE-2024-23126, it's crucial to immediately stop using the affected application and report the incident to your IT security team.