CVE-2024-8589: Autodesk AutoCAD SLDPRT File Parsing Out-Of-Bounds Read Vulnerability
A maliciously crafted SLDPRT file when parsed in odxswdll.dll through Autodesk AutoCAD can force a Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8589?
CVE-2024-8589 is considered a high-severity vulnerability due to the potential for arbitrary code execution and data exposure.
How do I fix CVE-2024-8589?
To fix CVE-2024-8589, update Autodesk AutoCAD to the latest version that addresses this vulnerability.
What is the impact of CVE-2024-8589?
The impact of CVE-2024-8589 includes the risk of crashes, sensitive data leaks, and arbitrary code execution.
Which versions of Autodesk AutoCAD are affected by CVE-2024-8589?
CVE-2024-8589 affects Autodesk AutoCAD versions from 2025 to 2025.1.1.
Can CVE-2024-8589 be exploited remotely?
CVE-2024-8589 primarily requires a maliciously crafted SLDPRT file to be opened by the user, indicating it is not a straightforward remote exploit.