2024-07-14 02:06:08 +00:00

215 lines
8.3 KiB
JSON

{
"id": "CVE-2022-33888",
"sourceIdentifier": "psirt@autodesk.com",
"published": "2022-10-03T15:15:17.427",
"lastModified": "2022-10-05T19:12:45.007",
"vulnStatus": "Analyzed",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "A malicious crafted Dwg2Spd file when processed through Autodesk DWG application could lead to memory corruption vulnerability by write access violation. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process."
},
{
"lang": "es",
"value": "Un archivo Dwg2Spd dise\u00f1ado de forma maliciosa cuando es procesado mediante la aplicaci\u00f3n Autodesk DWG podr\u00eda conllevar a una vulnerabilidad de corrupci\u00f3n de memoria por violaci\u00f3n de acceso de escritura. Esta vulnerabilidad, junto con otras, podr\u00eda conllevar a una ejecuci\u00f3n de c\u00f3digo en el contexto del proceso actual"
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH",
"baseScore": 7.8,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.8,
"impactScore": 5.9
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-787"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "5829F52D-F61C-4B79-B724-3388B1B1723A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "70C48E66-DF91-4F0B-B93D-F6372BFC55C9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "CCB04040-8C83-4381-B762-61F0ED8C8CC0"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_advance_steel:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "57C7CD03-53D7-4224-82AE-F7CD929E3F92"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "D042F7CF-2694-437E-B60A-4C324EBAB1F0"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "DF68C32D-7015-4513-BEB2-2CFD08DC799B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_civil_3d:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "5A628855-3BE7-4B40-AFB7-7819CBD88D21"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_civil_3d:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "A42B62B9-0ABA-4BE8-9115-6E633664FCE6"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "731F5891-D398-49AE-BA04-179D9FD18ED2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "E009D956-E27B-435B-A308-9279A7DA2087"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "0982CCA5-8834-43D7-8596-F330D7A0A52B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_lt:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "B937A033-FDA2-461E-8697-2341A9DE23DB"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "6FABCBE5-BF7B-4D2E-A886-8D38B3B82872"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "19A43BB0-22A6-4715-B556-1DE7CDCAF616"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "EC2B3E51-4AAD-4A1E-951D-6428A0C8D6BA"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "DE681603-E303-4759-B301-37BACF233C76"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "D1456E3E-3B38-42E2-96FE-B14361E30CB2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "E9601144-D1E1-4F8A-A6C0-447E17F14337"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2022",
"versionEndExcluding": "2022.1.3",
"matchCriteriaId": "74942A53-8D7E-4706-B9C3-EB1C03488684"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2023",
"versionEndExcluding": "2023.1.1",
"matchCriteriaId": "4B95D329-E683-4128-8FC4-300CA974F1F1"
}
]
}
]
}
],
"references": [
{
"url": "https://www.autodesk.com/trust/security-advisories/adsk-sa-2022-0020",
"source": "psirt@autodesk.com",
"tags": [
"Vendor Advisory"
]
}
]
}