Autodesk DWG TrueView Vulnerability Could Lead to Stack-based Overflow
CVE-2024-23138
What is CVE-2024-23138?
A vulnerability exists in Autodesk DWG TrueView, which can be exploited through a specially crafted DWG file. When this file is parsed, it can trigger a stack-based overflow, potentially allowing an attacker to crash the application, read sensitive information, or execute arbitrary code in the context of the affected process. This vulnerability underscores the importance of careful file handling and security practices when using Autodesk software.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Advance Steel 2024 < 2024.1.3
Advance Steel 2023 < 2023.1.5
Advance Steel 2022 < 2022.1.4
News Articles
CVE-2024-23138 Archives
VulnerabilityMarch 17, 2024CVE-2024-23138 & 23139: Autodesk Patches Critical Flaws in Popular Design SoftwareAutodesk, a leader in the design and engineering software industry, has released critical...
References
CVSS V3.1
Timeline
- ๐ฐ
First article discovered by securityonline.info
Vulnerability published