CVE-2024-23155: Multiple ZDI Vulnerabilities in Autodesk AutoCAD and certain AutoCAD-based products
A maliciously crafted MODEL file, when parsed in atfasminterface.dll through Autodesk applications, can be used to cause a Heap-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23155?
CVE-2024-23155 is considered a critical vulnerability due to its potential for remote code execution and system crashes.
How do I fix CVE-2024-23155?
To fix CVE-2024-23155, you should update your Autodesk applications to the latest version provided by Autodesk.
What types of software are affected by CVE-2024-23155?
CVE-2024-23155 affects Autodesk AutoCAD and other AutoCAD-based products.
What can a malicious actor do with CVE-2024-23155?
A malicious actor can exploit CVE-2024-23155 to execute arbitrary code or cause a crash through a specially crafted MODEL file.
How can I identify if my system is vulnerable to CVE-2024-23155?
You can identify if your system is vulnerable to CVE-2024-23155 by checking if you are using an affected version of Autodesk applications and verifying if any updates have been applied.