ZDI-25-1123: Autodesk AutoCAD CATPART File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Autodesk AutoCAD. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-14593.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-25-1123?
The ZDI-25-1123 vulnerability has a high severity rating, allowing remote code execution under specific conditions.
How do I fix ZDI-25-1123?
To resolve the ZDI-25-1123 vulnerability, users should update Autodesk AutoCAD to the latest security patch provided by the vendor.
What versions of Autodesk AutoCAD are affected by ZDI-25-1123?
ZDI-25-1123 affects various installations of Autodesk AutoCAD, but specific versions may vary depending on the patch level.
What are the potential consequences of ZDI-25-1123?
Exploiting ZDI-25-1123 can lead to arbitrary code execution, potentially compromising the affected system.
What type of user interaction is required to exploit ZDI-25-1123?
Exploitation of ZDI-25-1123 requires user interaction such as visiting a malicious web page or opening a malicious file.