CVE-2024-23145: Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software
A maliciously crafted PRT file, when parsed in opennurbs.dll through Autodesk applications, can force an Out-of-Bound Read. A malicious actor can leverage this vulnerability to cause a crash,read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23145?
CVE-2024-23145 is considered a high-severity vulnerability due to the potential for out-of-bounds read and arbitrary code execution.
How do I fix CVE-2024-23145?
To fix CVE-2024-23145, ensure you update your Autodesk AutoCAD software to the latest version provided by Autodesk.
What software is affected by CVE-2024-23145?
CVE-2024-23145 affects Autodesk AutoCAD 2024 when handling specially crafted PRT files.
What can an attacker do with CVE-2024-23145?
An attacker can exploit CVE-2024-23145 to cause application crashes, read sensitive data, or potentially execute arbitrary code.
Is CVE-2024-23145 easy to exploit?
Exploitation of CVE-2024-23145 may require user interaction to open a malicious PRT file, making it a targeted attack vector.