Use-After-Free Vulnerability in Autodesk AutoCAD Products
CVE-2022-25789
7.8HIGH
Key Information:
- Vendor
Autodesk
- Vendor
- CVE Published:
- 11 April 2022
What is CVE-2022-25789?
A security flaw affecting Autodesk AutoCAD versions 2022, 2021, 2020, and 2019 allows attackers to exploit maliciously crafted DWF, 3DS, and DWFX files. When such files are processed, a use-after-free vulnerability is triggered, potentially enabling code execution by an unauthorized entity. This exposure emphasizes the importance of keeping software updated to mitigate risks associated with file handling.
Affected Version(s)
Autodesk Advanced Steel, Civil 3D, AutoCAD, AutoCAD LT, AutoCAD Architecture, AutoCAD Electrical, AutoCAD Map 3D, AutoCAD Mechanical, AutoCAD MEP, AutoCAD Plant 3D 2022.1.1