Datakit CrossCadWare_x64.dll contains an out-of-bounds write past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This could allow an attacker to execute code in the context of the current process.
No analysis available yet.
Vendor Solution
Datakit recommends user upgrade to v2023.1 https://www.datakit.com/en/crosscad_ware.php or later.
Vendor Workaround
Datakit has identified specific workarounds and mitigations that should be applied to reduce the risk: * Do not open untrusted SLDPRT files with CrossCAD/Ware * Update CrossCAD/Ware to 2023.1 or a later version.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-27679 | Datakit CrossCadWare_x64.dll contains an out-of-bounds write past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This could allow an attacker to execute code in the context of the current process. |
Thu, 16 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-01-16T21:35:44.577Z
Reserved: 2023-01-23T18:59:04.562Z
Link: CVE-2023-23579
Updated: 2024-08-02T10:35:33.509Z
Status : Modified
Published: 2023-04-20T19:15:07.410
Modified: 2024-11-21T07:46:28.007
Link: CVE-2023-23579
No data.
OpenCVE Enrichment
No data.
EUVD