Out-Of-Bounds Write, Use of Uninitialized Resource and Use-After-Free vulnerabilities exist in the file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted SLDDRW or SLDPRT file. NOTE: this vulnerability was SPLIT from CVE-2024-1847.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-31889 | Out-Of-Bounds Write, Use of Uninitialized Resource and Use-After-Free vulnerabilities exist in the file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024. These vulnerabilities could allow an attacker to execute arbitrary code while opening a specially crafted SLDDRW or SLDPRT file. NOTE: this vulnerability was SPLIT from CVE-2024-1847. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.3ds.com/vulnerability/advisories |
|
History
No history.
Status: PUBLISHED
Assigner: 3DS
Published:
Updated: 2024-08-01T20:05:08.412Z
Reserved: 2024-04-04T09:52:06.996Z
Link: CVE-2024-3299
Updated: 2024-08-01T20:05:08.412Z
Status : Awaiting Analysis
Published: 2024-04-04T15:15:40.197
Modified: 2024-11-21T09:29:20.893
Link: CVE-2024-3299
No data.
OpenCVE Enrichment
No data.
EUVD