CVE-2024-3298

Out-Of-Bounds Write and Type Confusion vulnerabilities exist in the file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted DWG or DXF. NOTE: this vulnerability was SPLIT from CVE-2024-1847.
Configurations

No configuration.

History

No history.

Information

Published : 2024-04-04 15:15

Updated : 2024-04-04 16:33


NVD link : CVE-2024-3298

Mitre link : CVE-2024-3298

CVE.ORG link : CVE-2024-3298


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write

CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')