A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: autodesk

Published: 2021-09-15T16:35:25

Updated: 2021-09-15T16:35:25

Reserved: 2021-08-27T00:00:00


Link: CVE-2021-40155

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-15T17:15:10.643

Modified: 2021-09-28T12:25:01.757


Link: CVE-2021-40155

JSON object: View

cve-icon Redhat Information

No data.

CWE