Vulnerabilities > Autodesk

DATE CVE VULNERABILITY TITLE RISK
2022-06-21 CVE-2022-27870 Out-of-bounds Write vulnerability in Autodesk Autocad 2023
A maliciously crafted TGA file in Autodesk AutoCAD 2023 may be used to write beyond the allocated buffer while parsing TGA file.
local
low complexity
autodesk CWE-787
7.8
2022-06-21 CVE-2022-27871 Allocation of Resources Without Limits or Throttling vulnerability in Autodesk products
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior to 9.1.17 version may be used to write beyond the allocated buffer while parsing PDF files.
local
low complexity
autodesk CWE-770
7.8
2022-06-21 CVE-2022-27872 Improper Handling of Exceptional Conditions vulnerability in Autodesk Navisworks 2022
A maliciously crafted PDF file may be used to dereference a pointer for read or write operation while parsing PDF files in Autodesk Navisworks 2022.
local
low complexity
autodesk CWE-755
7.8
2022-06-16 CVE-2022-27531 Out-of-bounds Read vulnerability in Autodesk 3DS MAX 2021/2022/2022.3.3
A maliciously crafted TIF file can be forced to read beyond allocated boundaries in Autodesk 3ds Max 2022, and 2021 when parsing the TIF files.
local
low complexity
autodesk CWE-125
7.8
2022-06-16 CVE-2022-27532 Out-of-bounds Write vulnerability in Autodesk 3DS MAX 2021/2022/2022.3.3
A maliciously crafted TIF file in Autodesk 3ds Max 2022 and 2021 can be used to write beyond the allocated buffer while parsing TIF files.
local
low complexity
autodesk CWE-787
7.8
2022-04-19 CVE-2022-25788 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted JT file in Autodesk AutoCAD 2022 may be used to write beyond the allocated buffer while parsing JT files.
local
low complexity
autodesk CWE-787
7.8
2022-04-19 CVE-2022-27527 Out-of-bounds Write vulnerability in Autodesk Navisworks
A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files.
local
low complexity
autodesk CWE-787
7.8
2022-04-18 CVE-2022-27525 Out-of-bounds Write vulnerability in Autodesk Design Review
A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by write access violation.
local
low complexity
autodesk CWE-787
7.8
2022-04-18 CVE-2022-27526 Out-of-bounds Write vulnerability in Autodesk Design Review
A malicious crafted TGA file when consumed through DesignReview.exe application could lead to memory corruption vulnerability.
local
low complexity
autodesk CWE-787
7.8
2022-04-18 CVE-2022-27529 Out-of-bounds Write vulnerability in Autodesk products
A maliciously crafted PICT, BMP, PSD or TIF file in Autodesk AutoCAD 2022, 2021, 2020, 2019 may be used to write beyond the allocated buffer while parsing PICT, BMP, PSD or TIF file.
local
low complexity
autodesk CWE-787
7.8