Description
A maliciously crafted PDF file may be used to dereference a pointer for read or write operation while parsing PDF files in Autodesk Navisworks 2022. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32360 | A maliciously crafted PDF file may be used to dereference a pointer for read or write operation while parsing PDF files in Autodesk Navisworks 2022. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code. |
References
History
No history.
Status: PUBLISHED
Assigner: autodesk
Published:
Updated: 2024-08-03T05:41:10.449Z
Reserved: 2022-03-25T00:00:00.000Z
Link: CVE-2022-27872
No data.
Status : Modified
Published: 2022-06-21T15:15:08.910
Modified: 2024-11-21T06:56:22.260
Link: CVE-2022-27872
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD