An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application to write in unexpected paths. In order to exploit this the attacker would need the victim to enable full page heap in the application.
References
Link | Resource |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0007 | Vendor Advisory |
https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0007 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:57
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0007 - Vendor Advisory |
Information
Published : 2021-06-25 13:15
Updated : 2024-11-21 05:57
NVD link : CVE-2021-27043
Mitre link : CVE-2021-27043
CVE.ORG link : CVE-2021-27043
JSON object : View
Products Affected
autodesk
- advance_steel
- autocad_plant_3d
- autocad_electrical
- autocad_map_3d
- civil_3d
- autocad
- autocad_mep
- autocad_architecture
- autocad_mechanical
- dwg_trueview
- autocad_lt
CWE
CWE-787
Out-of-bounds Write