← Back

CVE-2022-33889

nvd nist
Published: Oct 3, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could be used to write beyond the allocated heap buffer. This vulnerability could lead to arbitrary code execution.

Affected (28)

11 products
Autocad
Autocad Advance Steel
Autocad Architecture
Autocad Civil 3d
Autocad Electrical
Autocad Lt
Autocad Map 3d
Autocad Mechanical
Autocad Mep
Autocad Plant 3d
Design Review
Configuration A
28 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2022.1.3
From 2023.0.0 to 2023.1.1
Autodesk
Before 2018
Version 2018
Version 2018 hotfix2
Version 2018 hotfix3
Version 2018 hotfix4
Version 2018 hotfix5
Version 2018 hotfix6
Version 2018 hotfix

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.