First published: Fri May 02 2025(Updated: )
Use-After-Free vulnerability exists in the SLDPRT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.
Credit: 3DS.Information-Security@3ds.com
Affected Software | Affected Version | How to fix |
---|---|---|
SOLIDWORKS eDrawings |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-1884 is considered high due to its potential to allow arbitrary code execution.
To fix CVE-2025-1884, update to the latest version of SOLIDWORKS eDrawings that addresses this vulnerability.
CVE-2025-1884 specifically affects users of SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025.
CVE-2025-1884 could allow an attacker to execute arbitrary code by opening a specially crafted SLDPRT file.
As of now, there is no documented workaround for CVE-2025-1884, and users are advised to avoid opening untrusted SLDPRT files.