CVE-2025-2497: DWG File Parsing Stack-Based Buffer Vulnerability
A maliciously crafted DWG file, when parsed through Autodesk Revit, can cause a Stack-Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2497?
CVE-2025-2497 is classified as a critical severity vulnerability due to its potential to allow arbitrary code execution.
How do I fix CVE-2025-2497?
To fix CVE-2025-2497, ensure that you install the latest security patches provided by Autodesk for Revit.
What is a Stack-Based Buffer Overflow in CVE-2025-2497?
In CVE-2025-2497, a Stack-Based Buffer Overflow occurs when a maliciously crafted DWG file overwrites the call stack, potentially leading to code execution.
Who is affected by CVE-2025-2497?
CVE-2025-2497 affects users of Autodesk Revit 2025 who open malicious DWG files.
Can CVE-2025-2497 be exploited remotely?
Yes, CVE-2025-2497 can be exploited remotely if a user opens a malicious DWG file received through email or downloaded from the internet.