A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to write beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: autodesk

Published: 2021-09-15T16:35:44

Updated: 2021-09-15T16:35:44

Reserved: 2021-08-27T00:00:00


Link: CVE-2021-40156

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-15T17:15:10.693

Modified: 2021-09-28T12:26:00.793


Link: CVE-2021-40156

JSON object: View

cve-icon Redhat Information

No data.

CWE