### [CVE-2024-23131](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-23131) ![](https://img.shields.io/static/v1?label=Product&message=AutoCAD%2C%20Advance%20Steel%20and%20Civil%203D&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3D%202024%2C%202023%2C%202022%2C%202021%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-119%20Memory%20Corruption%20-%20Generic&color=brighgreen) ### Description A maliciously crafted STP file in ASMKERN228A.dll or ASMDATAX228A.dll when parsed through Autodesk AutoCAD could lead to a memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process. ### POC #### Reference No PoCs from references. #### Github - https://github.com/NaInSec/CVE-LIST - https://github.com/fkie-cad/nvd-json-data-feeds