← Back

CVE-2024-37002

nvd nist
Published: Jun 25, 2024Modified: Nov 13, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: psirt@autodesk.com (Secondary)

Description

A maliciously crafted MODEL file, when parsed in ASMkern229A.dllthrough Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

Affected (36)

9 products
Autocad
Autocad Architecture
Autocad Electrical
Autocad Map 3d
Autocad Mechanical
Autocad Mep
Autocad Plant 3d
Civil 3d
Advance Steel
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration B
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration C
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration D
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration E
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration F
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration G
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration H
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1
Configuration I
4 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2022 to 2022.1.5
From 2023 to 2023.1.6
From 2024 to 2024.1.4
From 2025 to 2025.1

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.