A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploitation of these vulnerabilities may lead to code execution.
References
Link | Resource |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2023-0009 | Vendor Advisory |
https://www.autodesk.com/trust/security-advisories/adsk-sa-2023-0009 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:48
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.autodesk.com/trust/security-advisories/adsk-sa-2023-0009 - Vendor Advisory |
05 Jul 2023, 16:29
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-190 | |
CPE | cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:alias:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_civil_3d:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:inventor:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:vred:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:revit:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:infraworks:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:maya_usd:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:* cpe:2.3:a:autodesk:navisworks:*:*:*:*:*:*:*:* |
|
References | (MISC) https://www.autodesk.com/trust/security-advisories/adsk-sa-2023-0009 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
First Time |
Autodesk revit
Autodesk autocad Civil 3d Autodesk infraworks Autodesk autocad Electrical Autodesk autocad Architecture Autodesk autocad Plant 3d Autodesk autocad Mechanical Autodesk autocad Mep Autodesk vred Autodesk Autodesk maya Usd Autodesk inventor Autodesk autocad Lt Autodesk autocad Map 3d Autodesk autocad Advance Steel Autodesk autocad Autodesk alias Autodesk navisworks |
27 Jun 2023, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-06-27 19:15
Updated : 2024-11-21 07:48
NVD link : CVE-2023-25004
Mitre link : CVE-2023-25004
CVE.ORG link : CVE-2023-25004
JSON object : View
Products Affected
autodesk
- vred
- autocad_civil_3d
- maya_usd
- autocad_advance_steel
- autocad_plant_3d
- autocad_electrical
- infraworks
- autocad_map_3d
- alias
- autocad
- autocad_mep
- revit
- autocad_architecture
- autocad_mechanical
- inventor
- navisworks
- autocad_lt
CWE
CWE-190
Integer Overflow or Wraparound