CVE-2024-8591: Autodesk AutoCAD 3DM File Parsing Heap-based Buffer Overflow Code Execution Vulnerability
A maliciously crafted 3DM file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Heap-Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8591?
CVE-2024-8591 is considered a high-severity vulnerability due to its potential for heap-based buffer overflow.
How do I fix CVE-2024-8591?
To fix CVE-2024-8591, update your Autodesk AutoCAD software to version 2025.1.1 or later.
What type of vulnerability is CVE-2024-8591?
CVE-2024-8591 is a heap-based buffer overflow vulnerability that can be exploited via a maliciously crafted 3DM file.
What software is affected by CVE-2024-8591?
CVE-2024-8591 affects various versions of Autodesk AutoCAD, including AutoCAD Mechanical and AutoCAD Electrical, versions prior to 2025.1.1.
What could happen if CVE-2024-8591 is exploited?
If exploited, CVE-2024-8591 can lead to application crashes, sensitive data exposure, or arbitrary code execution.