Remote Code Execution Vulnerability in Trimble SketchUp Pro SKP File Parsing
CVE-2024-9713
7.8HIGH
What is CVE-2024-9713?
A vulnerability has been identified in Trimble SketchUp Pro related to the parsing of SKP files. When a user opens a malicious SKP file or visits a compromised webpage, a use-after-free flaw can be exploited. This occurs due to improper validation of object existence before operations are performed on them. As a result, an attacker may execute arbitrary code with the same privileges as the affected user, potentially compromising system integrity and security. Proper safeguarding measures are essential for users of Trimble SketchUp Pro.