CVE-2024-23120

A maliciously crafted STP and STEP file when parsed in ASMIMPORT228A.dll and ASMIMPORT229A.dll and through Autodesk applications can force an Out-of-Bound Write. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2024-02-22 00:15

Updated : 2024-06-15 03:15


NVD link : CVE-2024-23120

Mitre link : CVE-2024-23120

CVE.ORG link : CVE-2024-23120


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write