CVE-2025-1659: DWFX File Parsing Out-of-Bounds Read Vulnerability
A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1659?
CVE-2025-1659 has been rated as a high severity vulnerability due to its potential to cause crashes or allow code execution.
How do I fix CVE-2025-1659?
To address CVE-2025-1659, it is recommended to update Autodesk Navisworks to the latest version provided by Autodesk.
What impact does CVE-2025-1659 have on affected systems?
CVE-2025-1659 can lead to out-of-bounds read vulnerabilities, which may result in crashes or the exposure of sensitive data.
Who is affected by CVE-2025-1659?
Users of Autodesk Navisworks who open maliciously crafted DWFX files are particularly vulnerable to CVE-2025-1659.
Can CVE-2025-1659 lead to remote code execution?
Yes, a malicious actor can exploit CVE-2025-1659 to execute arbitrary code in the context of the current process.