CVE-2026-14479: Denial of Service in Autodesk Installer IPC Channel
A maliciously crafted input, when processed by the Autodesk Installer IPC frame parser, may trigger improper validation of an input-specified position or offset, resulting in an out-of-range substring operation. A malicious actor may leverage this vulnerability to cause the NT AUTHORITY\SYSTEM service to terminate unexpectedly, resulting in a denial-of-service condition.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14479?
The severity of CVE-2026-14479 is rated as medium with a score of 5.5.
What type of vulnerability is CVE-2026-14479?
CVE-2026-14479 is a Denial of Service vulnerability affecting the Autodesk Installer IPC Channel.
How does CVE-2026-14479 impact systems?
CVE-2026-14479 can lead to an out-of-range substring operation, potentially causing disruptions to the NT AUTHORITY\SYSTEM service.
How do I fix CVE-2026-14479?
To fix CVE-2026-14479, update your Autodesk Installer to the latest version provided by Autodesk.
Who is affected by CVE-2026-14479?
Users of the Autodesk Installer software are at risk of exploitation due to CVE-2026-14479.