A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can force an Out-of-Bound Read. A malicious actor can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code in the context of the current process.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2023-0005 | vendor advisory |