CVE-2024-23143: Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software
A maliciously crafted 3DM, MODEL and XB file, when parsed in ASMkern229A.dll and ASMBASE229A.dll through Autodesk applications, can force an Out-of-Bound Read and/or Out-of-Bound Write. A malicious actor can leverage this vulnerability to cause a crash,read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23143?
CVE-2024-23143 has been rated as critical due to its potential for causing crashes and disclosing sensitive information.
How do I fix CVE-2024-23143?
To address CVE-2024-23143, apply the latest security updates provided by Autodesk for affected applications.
Which Autodesk applications are affected by CVE-2024-23143?
CVE-2024-23143 specifically affects Autodesk AutoCAD 2024.
What are the potential impacts of CVE-2024-23143?
Exploitation of CVE-2024-23143 can lead to crashes, sensitive data exposure, and arbitrary code execution.
How can I mitigate the risks associated with CVE-2024-23143?
To mitigate the risks of CVE-2024-23143, ensure proper input validation and avoid opening untrusted 3DM, MODEL, or X_B files in Autodesk applications.