A maliciously crafted STP or SLDPRT file, when parsed in ODXSW_DLL.dll through Autodesk applications, can be used to uninitialized variables. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.
The code uses a variable that has not been initialized, leading to unpredictable or unintended results.
The product uses or accesses a resource that has not been initialized.
Link | Tags |
---|---|
https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0002 | vendor advisory |
https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0004 | vendor advisory |
https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009 | vendor advisory |