Out-Of-Bounds Write and Type Confusion vulnerabilities exist in the file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted DWG or DXF. NOTE: this vulnerability was SPLIT from CVE-2024-1847.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-31888 | Out-Of-Bounds Write and Type Confusion vulnerabilities exist in the file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted DWG or DXF. NOTE: this vulnerability was SPLIT from CVE-2024-1847. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.3ds.com/vulnerability/advisories |
|
History
No history.
Status: PUBLISHED
Assigner: 3DS
Published:
Updated: 2024-08-01T20:05:08.234Z
Reserved: 2024-04-04T09:52:02.081Z
Link: CVE-2024-3298
Updated: 2024-08-01T20:05:08.234Z
Status : Awaiting Analysis
Published: 2024-04-04T15:15:40.017
Modified: 2024-11-21T09:29:20.760
Link: CVE-2024-3298
No data.
OpenCVE Enrichment
No data.
EUVD