An out-of-bounds read can be exploited in Autodesk TrueView 2022 may lead to an exposure of sensitive information or a crash through using a maliciously crafted DWG file as an Input. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0007 | vendor advisory |