Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023
CVE-2023-2763
What is CVE-2023-2763?
A set of vulnerabilities in the file reading procedure of SOLIDWORKS Desktop can allow attackers to execute arbitrary code when handling specially crafted DWG or DXF files. These security issues stem from improper memory management and buffer handling, creating potential risks for users opening affected file types in the software. To mitigate these vulnerabilities, users should ensure they are using the latest version of SOLIDWORKS and stay informed about security updates.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SOLIDWORKS Desktop Release SOLIDWORKS 2021 Golden
SOLIDWORKS Desktop Release SOLIDWORKS 2022 Golden
SOLIDWORKS Desktop Release SOLIDWORKS 2023 Golden
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
