CVE-2024-23137: Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software
A maliciously crafted STP or SLDPRT file, when parsed in ODXSWDLL.dll through Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23137?
The severity of CVE-2024-23137 is currently classified as critical due to its potential to allow code execution.
How do I fix CVE-2024-23137?
To fix CVE-2024-23137, users should apply the latest security updates or patches provided by Autodesk for affected applications.
Which software is affected by CVE-2024-23137?
CVE-2024-23137 specifically affects Autodesk AutoCAD when parsing malicious STP or SLDPRT files.
Can CVE-2024-23137 be exploited remotely?
Yes, CVE-2024-23137 can potentially be exploited remotely through specially crafted files.
What types of files are associated with CVE-2024-23137?
CVE-2024-23137 is associated with STP and SLDPRT file types that can be parsed by Autodesk applications.