Buffer Over-Read Vulnerability in Autodesk TrueView 2022
CVE-2022-27523

7.1HIGH

Key Information:

Vendor
Autodesk
Vendor
CVE Published:
13 April 2022

Summary

A buffer over-read vulnerability exists in Autodesk TrueView 2022, which can be exploited using a specially designed DWG file. This may lead to the exposure of sensitive information or potentially cause the application to crash. When combined with other vulnerabilities, this buffer over-read could enable code execution within the context of the running process.

Affected Version(s)

Autodesk Trueview 2022.1.1

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.