mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 01:02:25 +00:00
379 lines
15 KiB
JSON
379 lines
15 KiB
JSON
{
|
|
"id": "CVE-2021-27042",
|
|
"sourceIdentifier": "psirt@autodesk.com",
|
|
"published": "2021-06-25T13:15:08.247",
|
|
"lastModified": "2022-05-13T17:35:54.563",
|
|
"vulnStatus": "Analyzed",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. The vulnerability exists because the application fails to handle a crafted DWG file, which causes an unhandled exception. An attacker can leverage this vulnerability to execute arbitrary code."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Un archivo DWG dise\u00f1ado maliciosamente puede ser usado para escribir m\u00e1s all\u00e1 del b\u00fafer asignado mientras se analizan los archivos DWG. La vulnerabilidad se presenta porque la aplicaci\u00f3n comete un fallo para manejar un archivo DWG dise\u00f1ado, lo que causa una excepci\u00f3n no manejada. Un atacante puede aprovechar esta vulnerabilidad para ejecutar c\u00f3digo arbitrario"
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV31": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "3.1",
|
|
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
|
|
"attackVector": "LOCAL",
|
|
"attackComplexity": "LOW",
|
|
"privilegesRequired": "NONE",
|
|
"userInteraction": "REQUIRED",
|
|
"scope": "UNCHANGED",
|
|
"confidentialityImpact": "HIGH",
|
|
"integrityImpact": "HIGH",
|
|
"availabilityImpact": "HIGH",
|
|
"baseScore": 7.8,
|
|
"baseSeverity": "HIGH"
|
|
},
|
|
"exploitabilityScore": 1.8,
|
|
"impactScore": 5.9
|
|
}
|
|
],
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "MEDIUM",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "PARTIAL",
|
|
"integrityImpact": "PARTIAL",
|
|
"availabilityImpact": "PARTIAL",
|
|
"baseScore": 6.8
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 8.6,
|
|
"impactScore": 6.4,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": true
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-755"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "DDC0E547-C366-4A0E-95DE-EC420492E698"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "B8319413-E093-4931-B2DB-A46522DF93C9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "0B350B87-23EC-44F8-9A5F-9AC815E15BD9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "CAE14E69-8BCB-4E00-8BAB-CB7F1688DC27"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "A084A960-35D8-4B9C-87DE-0213CA40CAD8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "20EE0BDC-3A97-4CD4-A232-922F8D613856"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "5FDD2042-5313-4658-AA4E-109684E91C43"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "FE031BD1-9F02-44C2-865E-2011511B36F5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "0A51CDDA-0D83-4331-9AB6-F6ED076157F6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "143F8B16-E253-477E-9875-94928BE5596B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "607A4804-A286-4237-82C3-8BE98662AE20"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndIncluding": "2022.0.1",
|
|
"matchCriteriaId": "967B286E-5E73-47E3-BC2F-951E26720370"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "64C50E3E-8EFA-4B0D-B284-CF8FE4129866"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "CBD4F808-CA46-4A8E-82DD-6D1A82DDF91C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "DFD09E68-2C34-4E76-9B67-868FA6E825A6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "08BC587D-E4C7-4758-8AF5-1970892C35C8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "282A07AC-8D43-4580-8D2E-8E30370049F3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "E37E4967-AC88-42D6-98C2-1BA63F20BD5C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "49512EB3-DE17-45FF-AB90-2966462A9C3C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "01A870BA-E78E-4975-BF6D-7D410BE8CD6C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "6EF85630-3DDC-4026-AC5A-F1B197F98C9E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "F5309100-B3E9-4144-AEA3-B9030E93FD78"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "954682D1-2E7A-4EAB-B4B8-43E2038EB7C7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "1016D7F3-2780-4412-A7AA-361B44A8632E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "A3D0B0D7-FC6F-43D8-85AA-AC0BD464E5A1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "AF6DF983-6772-45D4-A82A-EE1BB2EEFD4F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "F7ABD866-E08B-42F3-A19A-5574563AA540"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "6716F29E-FBA2-4178-A8AE-269D9CC5AC59"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "372905FF-2C9B-4366-BE56-36CACDA63BCD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "D2F1DCEB-7ABB-4109-943A-E2DEFB17D330"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "EA49E2B8-CBF5-4F6E-A832-D1FDB597FADE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "8CF7601F-D6A3-4CD6-961D-B8B1B82E29CE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "5F285B8D-585C-4C23-98FA-E09DE53C8247"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "A10D9CEE-D92D-470D-928F-8F90243618EE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "0199953B-BCAC-405E-BDC6-951BEAE01570"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "FBDFDF50-5230-41F1-B380-AD3EC4B53DB7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2019",
|
|
"versionEndExcluding": "2019.1.3",
|
|
"matchCriteriaId": "F6A3326B-382B-4137-B0E7-0D54E825B717"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2020",
|
|
"versionEndExcluding": "2020.1.4",
|
|
"matchCriteriaId": "48F67A57-7528-406B-9BF1-6A963F732564"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2021",
|
|
"versionEndExcluding": "2021.1.1",
|
|
"matchCriteriaId": "825FC323-CAE7-4B39-85AD-966980D30D89"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2022",
|
|
"versionEndExcluding": "2022.0.1",
|
|
"matchCriteriaId": "F430EA73-2B9F-42D9-9005-42F439ABF63C"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0007",
|
|
"source": "psirt@autodesk.com",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
}
|
|
]
|
|
} |