Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c24w-ppxr-mfxc

Опубликовано: 22 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A maliciously crafted SLDPRT file when ASMkern228A.dll parsed through Autodesk AutoCAD can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

A maliciously crafted SLDPRT file when ASMkern228A.dll parsed through Autodesk AutoCAD can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

EPSS

Процентиль: 71%
0.00685
Низкий

7.5 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.8
nvd
почти 2 года назад

A maliciously crafted SLDPRT file in ASMkern228A.dll when parsed through Autodesk applications can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

EPSS

Процентиль: 71%
0.00685
Низкий

7.5 High

CVSS3

Дефекты

CWE-416