2024-02-22 00:55:30 +00:00
{
"id" : "CVE-2024-0446" ,
"sourceIdentifier" : "psirt@autodesk.com" ,
"published" : "2024-02-22T00:15:51.903" ,
2025-04-11 16:03:55 +00:00
"lastModified" : "2025-04-11T15:57:56.020" ,
"vulnStatus" : "Analyzed" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2024-02-22 00:55:30 +00:00
"descriptions" : [
{
"lang" : "en" ,
2025-02-10 23:03:48 +00:00
"value" : "A maliciously crafted STP, CATPART or MODEL file, when parsed in ASMKERN228A.dll and ASMdatax229A.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process."
2024-02-22 21:00:33 +00:00
} ,
{
"lang" : "es" ,
"value" : "Un archivo STP, CATPART o MODEL creado con fines malintencionados cuando se analiza en ASMKERN228A.dll a trav\u00e9s de Autodesk AutoCAD puede forzar una escritura fuera de los l\u00edmites. Un actor malintencionado puede aprovechar esta vulnerabilidad para provocar un bloqueo, escribir datos confidenciales o ejecutar c\u00f3digo arbitrario en el contexto del proceso actual."
2024-02-22 00:55:30 +00:00
}
] ,
2024-08-01 14:03:18 +00:00
"metrics" : {
"cvssMetricV31" : [
2025-01-28 19:03:49 +00:00
{
"source" : "psirt@autodesk.com" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" ,
"baseScore" : 7.8 ,
"baseSeverity" : "HIGH" ,
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "REQUIRED" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
"availabilityImpact" : "HIGH"
} ,
"exploitabilityScore" : 1.8 ,
"impactScore" : 5.9
} ,
2024-08-01 14:03:18 +00:00
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 7.5 ,
"baseSeverity" : "HIGH" ,
2024-08-01 14:03:18 +00:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "HIGH" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "REQUIRED" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2024-08-01 14:03:18 +00:00
} ,
"exploitabilityScore" : 1.6 ,
"impactScore" : 5.9
}
]
} ,
2024-02-22 00:55:30 +00:00
"weaknesses" : [
{
"source" : "psirt@autodesk.com" ,
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-787"
}
]
2025-04-11 16:03:55 +00:00
} ,
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-787"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "87CE995F-0A26-4A6B-ADAD-BD92DE041CC0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "AE884173-F3DD-499F-BD76-30163694A4C8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "F731E320-ECF2-4475-A272-1F5001F69F6C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "6E84F5F3-11EC-4F50-A876-82A3711B2887"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "D2E7315F-F000-4259-9B22-19155ECFF63C"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "3ECBFF29-3DF6-486F-AD72-96D27CC606CA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "E605F3C7-2CE6-47D2-9FD9-894F2DA6653B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "6B0C6F22-AD34-47F3-BD17-44BDDBD1DF54"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "806EBADF-277C-45C8-95C8-9DDDC3A587F2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "84FA9407-98AC-4ABC-B406-76A9D324C070"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "5833D3EE-E6F2-4F72-B66A-D1441E3A4F32"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "0EC7C7DA-1682-43FF-8515-2C5E6C9CC502"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "A71C7E76-81BB-40C7-AE45-65E26651FA04"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "B77DFA45-167C-453A-A543-16A4A51514B4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "2EAD1ED0-0761-49CA-BAF0-2A4EB39FEEFD"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "770B3D64-582F-453E-A8CD-D2B655EEA3DF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "C12DA888-C72E-424A-9A66-2B72C3885022"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "CDA5C264-8E3E-4EB3-A586-BAF5076F9B5F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "A7019B5E-D425-41CC-9F35-D4A92597BA6A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "0BECC47B-077B-4448-AB37-FDA334A1CDA9"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "A16CEB16-2B44-4AF2-A0F4-497F30DC70CC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "4BDB09F0-77AB-4177-9059-F67A7D2781A2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "94B704A0-03BB-4F75-8621-142FC2EB3F3F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "CF2BDC5F-7710-4C2A-AF60-71F3A1E4B020"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "15E49672-CBD2-4052-AC01-F0B02AF94AAF"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "CEFE632B-569A-433B-96C1-FF87BD35F168"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "93561E79-EBDF-4DE1-92F8-CF5764932523"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "798D132D-E71C-4C94-A2A4-B5ED222FE2A0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "4C1FC811-08B1-4C9D-B65D-7BACAC04A72C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "F745DE13-EA25-48E7-9DC0-8A11051D3DB1"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "57C7AA10-6C8D-4CD7-8BBE-1B7069F9DC48"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "5068B231-93C3-4CAF-A679-A87117016472"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "C5622C87-4585-4EBD-A868-95DF104C6B8F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "B1930F6C-449E-481A-8E7E-48CF14FF4310"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "F954159B-F922-4D0D-826D-A5390C94DFA2"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "70BC67D3-9BB7-4882-ACF7-3866AB487555"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "1FF491D7-280B-4DEE-B912-8677F62D3195"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "B09BA7FD-4C04-4B7A-9824-19F918651A5B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "4B55C95F-762E-4356-9A5C-83CFFC99A743"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "01723BB3-1692-41D5-9123-5FB17F8C44AD"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2021" ,
"versionEndExcluding" : "2021.1.4" ,
"matchCriteriaId" : "7169F2CB-58BB-46C2-883D-4FE3E66A4940"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2022" ,
"versionEndExcluding" : "2022.1.4" ,
"matchCriteriaId" : "4540CC32-0DDA-4483-A087-D95C3C610287"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2023" ,
"versionEndExcluding" : "2023.1.5" ,
"matchCriteriaId" : "EB7AE2EA-96D5-47AE-A667-AFD5F57047B4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2024" ,
"versionEndExcluding" : "2024.1.3" ,
"matchCriteriaId" : "7E44032A-F590-43E0-92DF-5FD3E142E147"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "2025" ,
"versionEndExcluding" : "2025.0.1" ,
"matchCriteriaId" : "407362FB-1FC4-4B78-843B-C64539AEE7F9"
}
]
}
]
2024-02-22 00:55:30 +00:00
}
] ,
"references" : [
{
"url" : "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0002" ,
2025-04-11 16:03:55 +00:00
"source" : "psirt@autodesk.com" ,
"tags" : [
"Vendor Advisory"
]
2024-03-01 07:00:29 +00:00
} ,
{
"url" : "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0004" ,
2025-04-11 16:03:55 +00:00
"source" : "psirt@autodesk.com" ,
"tags" : [
"Vendor Advisory"
]
2024-06-14 22:03:11 +00:00
} ,
{
"url" : "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009" ,
2025-04-11 16:03:55 +00:00
"source" : "psirt@autodesk.com" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0002" ,
2025-04-11 16:03:55 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0004" ,
2025-04-11 16:03:55 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0009" ,
2025-04-11 16:03:55 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-02-22 00:55:30 +00:00
}
]
}