CVE-2024-23157: Multiple ZDI Vulnerabilities in Autodesk AutoCAD and certain AutoCAD-based products
A maliciously crafted SLDASM or SLDPRT file, when parsed in ODXSWDLL.dll through Autodesk applications, can lead to a memory corruption vulnerability by write access violation. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23157?
The severity of CVE-2024-23157 is considered high due to the potential for memory corruption and code execution.
How do I fix CVE-2024-23157?
To fix CVE-2024-23157, update your Autodesk applications to the latest version provided by Autodesk.
What types of files are associated with CVE-2024-23157?
CVE-2024-23157 is associated with maliciously crafted SLDASM or SLDPRT files.
Which products are affected by CVE-2024-23157?
CVE-2024-23157 affects Autodesk AutoCAD and AutoCAD-based products.
What could happen if I am exposed to CVE-2024-23157?
If exposed to CVE-2024-23157, a user could experience memory corruption leading to code execution in the current process.