CVE-2024-23147: Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software
A maliciously crafted CATPART, XB and STEP, when parsed in ASMKERN228A.dll and ASMKERN229A.dll through Autodesk applications, can lead to a memory corruption vulnerability by write access violation. This vulnerability, in conjunction with other vulnerabilities, can lead to code execution in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23147?
CVE-2024-23147 has a critical severity rating due to its potential for remote code execution.
How do I fix CVE-2024-23147?
To mitigate CVE-2024-23147, ensure you update Autodesk AutoCAD to the latest version as recommended by the vendor.
What products are affected by CVE-2024-23147?
CVE-2024-23147 specifically affects Autodesk AutoCAD 2024.
What type of attack does CVE-2024-23147 enable?
CVE-2024-23147 allows for memory corruption through a crafted CATPART, X_B, or STEP file, which may lead to code execution.
What should I do if I believe I'm affected by CVE-2024-23147?
If you suspect you are affected by CVE-2024-23147, immediately update your software and follow best practices for cybersecurity.