CVE-2025-1884: Use-After-Free vulnerability exists in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025
Use-After-Free vulnerability exists in the SLDPRT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1884?
The severity of CVE-2025-1884 is considered high due to its potential to allow arbitrary code execution.
How do I fix CVE-2025-1884?
To fix CVE-2025-1884, update to the latest version of SOLIDWORKS eDrawings that addresses this vulnerability.
What systems are affected by CVE-2025-1884?
CVE-2025-1884 specifically affects users of SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025.
What kind of attack is possible with CVE-2025-1884?
CVE-2025-1884 could allow an attacker to execute arbitrary code by opening a specially crafted SLDPRT file.
Is there a workaround for CVE-2025-1884 until a patch is available?
As of now, there is no documented workaround for CVE-2025-1884, and users are advised to avoid opening untrusted SLDPRT files.