A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could be used to write beyond the allocated heap buffer. This vulnerability could lead to arbitrary code execution.
References
Link | Resource |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0021 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: autodesk
Published: 2022-10-03T14:22:14
Updated: 2022-10-03T14:22:14
Reserved: 2022-06-16T00:00:00
Link: CVE-2022-33889
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-10-03T15:15:17.633
Modified: 2022-10-05T13:21:50.967
Link: CVE-2022-33889
JSON object: View
Redhat Information
No data.
CWE