CVE-2024-8896: Autodesk AutoCAD DXF File Parsing Unitialized Variable Code Execution Vulnerability
A maliciously crafted DXF file when parsed in acdb25.dll through Autodesk AutoCAD can force to access a variable prior to initialization. A malicious actor can leverage this vulnerability to cause a crash, write sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8896?
CVE-2024-8896 has a high severity due to its potential to allow arbitrary code execution and sensitive data exposure.
How do I fix CVE-2024-8896?
To fix CVE-2024-8896, ensure you update to the latest version of Autodesk AutoCAD or related software that addresses this vulnerability.
What versions are affected by CVE-2024-8896?
CVE-2024-8896 affects Autodesk AutoCAD and related software versions 2025.0 to 2025.1.1.
Can CVE-2024-8896 be exploited remotely?
Yes, CVE-2024-8896 can be exploited remotely through the use of a malicious DXF file.
What impact does CVE-2024-8896 have on Autodesk software?
CVE-2024-8896 can cause crashes, write sensitive data, or execute arbitrary code in the context of the current user.