CVE-2022-33888
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
A malicious crafted Dwg2Spd file when processed through Autodesk DWG application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
Affected (20)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 | |
| From 2022 to 2022.1.3 |
References (2)
Source: psirt@autodesk.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.