← Back

CVE-2022-27865

nvd nist
Published: Jul 29, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A maliciously crafted TGA or PCX file may be used to write beyond the allocated buffer through DesignReview.exe application while parsing TGA and PCX files. This vulnerability may be exploited to execute arbitrary code.

Affected (10)

1 product
Design Review
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
Version 2011
Version 2012
Version 2013
Version 2017
Version 2018
Version 2018 hotfix2
Version 2018 hotfix3
Version 2018 hotfix4
Version 2018 hotfix5
Version 2018 hotfix

References (2)

Source: psirt@autodesk.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.