Описание
A maliciously crafted 3DM file, when parsed through Autodesk AutoCAD, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
A maliciously crafted 3DM file, when parsed through Autodesk AutoCAD, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2025-1432
- https://www.autodesk.com/products/autodesk-access/overview
- https://www.autodesk.com/support/technical/article/caas/sfdcarticles/sfdcarticles/Where-can-I-download-the-latest-update-of-AutoCAD-AutoCAD-LT-2022.html
- https://www.autodesk.com/trust/security-advisories/adsk-sa-2025-0001
Связанные уязвимости
A maliciously crafted 3DM file, when parsed through Autodesk AutoCAD, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.
Уязвимость программного обеспечения для моделирования, проектирования и черчения AutoCAD, связанная с использованием памяти после ее освобождения, позволяющая нарушителю вызвать отказ в обслуживании, получить несанкционированный доступ к защищаемой информации