A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to write beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: autodesk

Published: 2021-09-15T16:35:44

Updated: 2024-08-04T02:27:31.827Z

Reserved: 2021-08-27T00:00:00

Link: CVE-2021-40156

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-09-15T17:15:10.693

Modified: 2021-09-28T12:26:00.793

Link: CVE-2021-40156

cve-icon Redhat

No data.