CVE-2024-7992: Autodesk AutoCAD DWG Stack-Based Buffer Overflow Code Execution Vulnerability
A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force a Stack-based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7992?
CVE-2024-7992 is classified as a high-severity vulnerability due to its potential for stack-based buffer overflow and remote code execution.
How do I fix CVE-2024-7992?
To fix CVE-2024-7992, users should update their Autodesk AutoCAD products to versions beyond 2025.1.1 as per the vendor's security advisory.
What products are affected by CVE-2024-7992?
CVE-2024-7992 affects various Autodesk products including AutoCAD, AutoCAD Electrical, and Autodesk DWG TrueView from versions 2025 and below.
What should I do if I receive a malicious DWG file related to CVE-2024-7992?
If you receive a malicious DWG file, do not open it and ensure your AutoCAD software is updated to mitigate the risk from CVE-2024-7992.
Can CVE-2024-7992 lead to data breaches?
Yes, CVE-2024-7992 can be exploited to read sensitive data, which may lead to data breaches depending on the nature of the data handled by the affected software.