Description
A maliciously crafted PDF file may be used to dereference a pointer for read or write operation while parsing PDF files in Autodesk Navisworks 2022. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code.
Published: 2022-06-21
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-32360 A maliciously crafted PDF file may be used to dereference a pointer for read or write operation while parsing PDF files in Autodesk Navisworks 2022. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code.
History

No history.

Subscriptions

Autodesk Navisworks
cve-icon MITRE

Status: PUBLISHED

Assigner: autodesk

Published:

Updated: 2024-08-03T05:41:10.449Z

Reserved: 2022-03-25T00:00:00.000Z

Link: CVE-2022-27872

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-06-21T15:15:08.910

Modified: 2024-11-21T06:56:22.260

Link: CVE-2022-27872

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses