CVE-2024-37004: Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software
A maliciously crafted SLDPRT file, when parsed in ASMKERN229A.dll through Autodesk applications, can cause a use-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37004?
CVE-2024-37004 has a high severity rating due to its potential for code execution through a maliciously crafted SLDPRT file.
How do I fix CVE-2024-37004?
To fix CVE-2024-37004, ensure that you are using the latest version of Autodesk AutoCAD with all security patches applied.
Which Autodesk applications are impacted by CVE-2024-37004?
CVE-2024-37004 primarily affects Autodesk AutoCAD when parsing SLDPRT files.
What type of vulnerability is CVE-2024-37004?
CVE-2024-37004 is classified as a use-after-free vulnerability that can lead to code execution.
What can an attacker achieve by exploiting CVE-2024-37004?
An attacker exploiting CVE-2024-37004 can potentially execute arbitrary code in the context of the currently running process.