Out-Of-Bounds Write and Type Confusion vulnerabilities exist in the file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted DWG or DXF. NOTE: this vulnerability was SPLIT from CVE-2024-1847.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.3ds.com/vulnerability/advisories |
History
No history.
MITRE
Status: PUBLISHED
Assigner: 3DS
Published: 2024-04-04T15:11:24.865Z
Updated: 2024-08-01T20:05:08.234Z
Reserved: 2024-04-04T09:52:02.081Z
Link: CVE-2024-3298
Vulnrichment
Updated: 2024-08-01T20:05:08.234Z
NVD
Status : Awaiting Analysis
Published: 2024-04-04T15:15:40.017
Modified: 2024-04-04T16:33:06.610
Link: CVE-2024-3298
Redhat
No data.