Buffer Overflow Vulnerability in Autodesk AutoCAD 2023
CVE-2022-27870

7.8HIGH

Summary

A vulnerability in Autodesk AutoCAD 2023 allows an attacker to exploit the application by crafting a malicious TGA file. When this file is processed, it can lead to a buffer overflow, which enables the potential execution of arbitrary code. This highlights a significant security risk for users relying on AutoCAD for their design and drafting needs, emphasizing the importance of applying necessary security patches and updates.

Affected Version(s)

Autodesk Advanced Steel, Civil 3D, AutoCAD, AutoCAD LT, AutoCAD Architecture, AutoCAD Electrical, AutoCAD Map 3D, AutoCAD Mechanical, AutoCAD MEP, AutoCAD Plant 3D 2023

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.