CVE-2024-8587: Autodesk AutoCAD SLDPRT File Parsing Heap-based Buffer Overflow Code Execution Vulnerability
A maliciously crafted SLDPRT file when parsed in odxswdll.dll through Autodesk AutoCAD can force a Heap Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8587?
The severity of CVE-2024-8587 is high due to its potential to cause crashes and execute arbitrary code.
How do I fix CVE-2024-8587?
To fix CVE-2024-8587, update Autodesk AutoCAD and related products to the latest version provided by Autodesk.
What types of software are affected by CVE-2024-8587?
CVE-2024-8587 affects Autodesk AutoCAD 2025 and its associated applications like Advance Steel and Civil 3D.
What can a malicious actor achieve with CVE-2024-8587?
A malicious actor can exploit CVE-2024-8587 to crash the application, write sensitive data, or execute arbitrary code.
Is CVE-2024-8587 a buffer overflow vulnerability?
Yes, CVE-2024-8587 is a buffer overflow vulnerability that occurs when parsing a maliciously crafted SLDPRT file.