← Back

CVE-2022-41307

nvd nist
Published: Oct 14, 2022Modified: May 14, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by read access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

Affected (4)

1 product
Subassembly Composer
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
Version 2020
Version 2021
Version 2022
Version 2023

References (2)

Source: psirt@autodesk.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.