CVE-2024-37001: Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software
A maliciously crafted 3DM file, when parsed in opennurbs.dll through Autodesk applications, can be used to cause a Heap-based Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37001?
CVE-2024-37001 has been assigned a high severity rating due to its potential for exploitation leading to arbitrary code execution.
How do I fix CVE-2024-37001?
To fix CVE-2024-37001, users should update their Autodesk applications to the latest version that addresses this vulnerability.
Which Autodesk products are affected by CVE-2024-37001?
CVE-2024-37001 affects Autodesk AutoCAD applications that utilize the opennurbs.dll for parsing 3DM files.
What are the potential impacts of CVE-2024-37001?
Exploitation of CVE-2024-37001 could result in application crashes, exposure of sensitive data, or the execution of arbitrary code.
How can I determine if I am vulnerable to CVE-2024-37001?
Users can determine their vulnerability to CVE-2024-37001 by checking if they are using an affected version of Autodesk AutoCAD that processes 3DM files.