ZDI-24-1452: Autodesk AutoCAD CATPART File Parsing Memory Corruption Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Autodesk AutoCAD. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-8592.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-1452?
ZDI-24-1452 has a CVSS rating that indicates a high severity level due to its potential for remote code execution.
How do I fix ZDI-24-1452?
To mitigate ZDI-24-1452, ensure that you apply the latest security updates and patches provided by Autodesk for AutoCAD.
What software is impacted by ZDI-24-1452?
ZDI-24-1452 affects installations of Autodesk AutoCAD, specifically the 2024 version.
Is user interaction required to exploit ZDI-24-1452?
Yes, user interaction is required to exploit ZDI-24-1452, as the target must visit a malicious page or open a malicious file.
What are the potential consequences of ZDI-24-1452?
Exploitation of ZDI-24-1452 can allow remote attackers to execute arbitrary code on affected installations, potentially compromising the system.