CVE-2024-23153: Multiple ZDI Vulnerabilities in Autodesk AutoCAD and certain AutoCAD-based products
A maliciously crafted MODEL file, when parsed in libodx.dll through Autodesk applications, can force an Out-of-Bounds Read. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23153?
CVE-2024-23153 is considered a high severity vulnerability due to its potential to allow a malicious actor to cause a crash or execute arbitrary code.
How do I fix CVE-2024-23153?
To fix CVE-2024-23153, ensure that you update your Autodesk applications to the latest version that includes patches addressing this vulnerability.
Which software is affected by CVE-2024-23153?
CVE-2024-23153 affects Autodesk AutoCAD and AutoCAD-based products.
What exploitation impacts are associated with CVE-2024-23153?
Exploitation of CVE-2024-23153 can lead to crashes, unauthorized reading of sensitive data, or arbitrary code execution.
How does CVE-2024-23153 occur?
CVE-2024-23153 occurs when a maliciously crafted MODEL file is parsed in libodx.dll through affected Autodesk applications.