← Back

CVE-2021-27035

nvd nist
Published: Jul 9, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A maliciously crafted TIFF, TIF, PICT, TGA, or DWF files in Autodesk Design Review 2018, 2017, 2013, 2012, 2011 can be forced to read beyond allocated boundaries when parsing the TIFF, PICT, TGA or DWF files. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

Affected (8)

1 product
Design Review
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
Version 2011
Version 2012
Version 2013
Version 2017
Version 2018
Version 2018 hotfix2
Version 2018 hotfix3
Version 2018 hotfix

References (2)

Source: psirt@autodesk.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.