CVE-2025-1658: DWFX File Parsing Out-of-Bounds Read Vulnerability
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1658?
CVE-2025-1658 is classified as a critical vulnerability due to the potential for an attacker to execute arbitrary code.
How do I fix CVE-2025-1658?
To fix CVE-2025-1658, ensure you update Autodesk Navisworks to the latest version provided by Autodesk that addresses this vulnerability.
What types of attacks can exploit CVE-2025-1658?
CVE-2025-1658 can be exploited to cause application crashes, read sensitive data, or execute arbitrary code.
Which software is affected by CVE-2025-1658?
CVE-2025-1658 affects Autodesk Navisworks when parsing malicious DWFX files.
What are the consequences of CVE-2025-1658 being exploited?
Exploitation of CVE-2025-1658 can lead to a denial of service, exposure of sensitive data, and unauthorized code execution.