2024-12-08 03:06:42 +00:00

102 lines
3.3 KiB
JSON

{
"id": "CVE-2022-41305",
"sourceIdentifier": "psirt@autodesk.com",
"published": "2022-10-14T17:15:16.397",
"lastModified": "2024-11-21T07:23:00.550",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process."
},
{
"lang": "es",
"value": "Un archivo PKT dise\u00f1ado maliciosamente cuando es consumido mediante la aplicaci\u00f3n SubassemblyComposer.exe podr\u00eda conllevar a una vulnerabilidad de corrupci\u00f3n de memoria por violaci\u00f3n de acceso de escritura. Esta vulnerabilidad, junto con otras, podr\u00eda conllevar a una ejecuci\u00f3n de c\u00f3digo en el contexto del proceso actual"
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"baseScore": 7.8,
"baseSeverity": "HIGH",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH"
},
"exploitabilityScore": 1.8,
"impactScore": 5.9
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-787"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:subassembly_composer:2020:*:*:*:*:*:*:*",
"matchCriteriaId": "B57B5D07-07FC-408A-8DA4-94D07D3ACF04"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:subassembly_composer:2021:*:*:*:*:*:*:*",
"matchCriteriaId": "E949EE22-7990-4536-8379-6F18AAD33A5F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:subassembly_composer:2022:*:*:*:*:*:*:*",
"matchCriteriaId": "2DDFD0DD-5B52-44B2-8B85-5DB606A35480"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:subassembly_composer:2023:*:*:*:*:*:*:*",
"matchCriteriaId": "9F62F5B8-8603-457C-9CF4-60870954B525"
}
]
}
]
}
],
"references": [
{
"url": "https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0019",
"source": "psirt@autodesk.com",
"tags": [
"Not Applicable"
]
},
{
"url": "https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0019",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Not Applicable"
]
}
]
}