First published: Tue Jun 25 2024(Updated: )
A maliciously crafted MODEL file, when parsed in atf_asm_interface.dll through Autodesk applications, can be used to cause a Heap-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process.
Credit: psirt@autodesk.com
Affected Software | Affected Version | How to fix |
---|---|---|
Autodesk AutoCAD 2024 | ||
AutoCAD |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-23155 is considered a critical vulnerability due to its potential for remote code execution and system crashes.
To fix CVE-2024-23155, you should update your Autodesk applications to the latest version provided by Autodesk.
CVE-2024-23155 affects Autodesk AutoCAD and other AutoCAD-based products.
A malicious actor can exploit CVE-2024-23155 to execute arbitrary code or cause a crash through a specially crafted MODEL file.
You can identify if your system is vulnerable to CVE-2024-23155 by checking if you are using an affected version of Autodesk applications and verifying if any updates have been applied.