Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-33400 | Heap-based Buffer Overflow and Uninitialized Variable vulnerabilities exist in the X_B and SAT file reading procedure in eDrawings from Release SOLIDWORKS 2024 through Release SOLIDWORKS 2025. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted X_B or SAT file. |
| Link | Providers |
|---|---|
| https://www.3ds.com/vulnerability/advisories |
|
Tue, 19 Nov 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dassault
Dassault edrawings |
|
| CPEs | cpe:2.3:a:dassault:edrawings:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dassault
Dassault edrawings |
|
| Metrics |
ssvc
|
Tue, 19 Nov 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Heap-based Buffer Overflow and Uninitialized Variable vulnerabilities exist in the X_B and SAT file reading procedure in eDrawings from Release SOLIDWORKS 2024 through Release SOLIDWORKS 2025. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted X_B or SAT file. | |
| Title | Heap-based Buffer Overflow and Uninitialized Variable vulnerabilities exist in eDrawings from Release SOLIDWORKS 2024 through Release SOLIDWORKS 2025 | |
| Weaknesses | CWE-122 CWE-457 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: 3DS
Published:
Updated: 2024-11-19T14:09:14.475Z
Reserved: 2024-10-21T07:28:40.214Z
Link: CVE-2024-10204
Updated: 2024-11-19T14:09:09.950Z
Status : Deferred
Published: 2024-11-19T14:15:16.940
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-10204
No data.
OpenCVE Enrichment
No data.
EUVD