Vulnerabilities > CVE-2022-25797 - Out-of-bounds Write vulnerability in Autodesk DWG Trueview 2021/2022

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
autodesk
CWE-787

Summary

A maliciously crafted PDF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 can be used to dereference for a write beyond the allocated buffer while parsing PDF files. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception.

Vulnerable Configurations

Part Description Count
Application
Autodesk
2

Common Weakness Enumeration (CWE)