A maliciously crafted PDF file may be used to dereference a pointer for read or write operation while parsing PDF files in Autodesk Navisworks 2022. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-32360 A maliciously crafted PDF file may be used to dereference a pointer for read or write operation while parsing PDF files in Autodesk Navisworks 2022. The vulnerability exists because the application fails to handle a crafted PDF file, which causes an unhandled exception. An attacker can leverage this vulnerability to cause a crash or read sensitive data or execute arbitrary code.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: autodesk

Published:

Updated: 2024-08-03T05:41:10.449Z

Reserved: 2022-03-25T00:00:00

Link: CVE-2022-27872

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-06-21T15:15:08.910

Modified: 2024-11-21T06:56:22.260

Link: CVE-2022-27872

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses