Show plain JSON{"id": "CVE-2024-23158", "cveTags": [], "metrics": {"cvssMetricV31": [{"type": "Secondary", "source": "psirt@autodesk.com", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.8, "attackVector": "LOCAL", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "REQUIRED", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 5.9, "exploitabilityScore": 1.8}, {"type": "Secondary", "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 4.2, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:L", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "HIGH", "availabilityImpact": "LOW", "privilegesRequired": "LOW", "confidentialityImpact": "LOW"}, "impactScore": 2.5, "exploitabilityScore": 1.6}]}, "published": "2024-06-25T04:15:14.007", "references": [{"url": "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0010", "tags": ["Vendor Advisory"], "source": "psirt@autodesk.com"}, {"url": "https://www.autodesk.com/trust/security-advisories/adsk-sa-2024-0010", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Secondary", "source": "psirt@autodesk.com", "description": [{"lang": "en", "value": "CWE-416"}]}, {"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-416"}]}], "descriptions": [{"lang": "en", "value": "A maliciously crafted IGES file, when parsed in ASMImport229A.dll through Autodesk applications, can be used to cause a use-after-free vulnerability. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process."}, {"lang": "es", "value": "Un archivo IGES creado con fines malintencionados, cuando se analiza en ASMImport229A.dll a trav\u00e9s de aplicaciones de Autodesk, puede usarse para provocar una vulnerabilidad de use-after-free. Un actor malintencionado puede aprovechar esta vulnerabilidad para provocar un bloqueo o ejecutar c\u00f3digo arbitrario en el contexto del proceso actual."}], "lastModified": "2025-05-06T19:43:45.167", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "897AE769-8C96-4E4D-BE71-4851A183B725", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BBEFA684-46BD-4766-BF0B-48243175B61C", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F186FEF1-C88A-4F14-A30F-5B688FA5100C", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:autocad_map_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BFDF5574-487C-4F12-96AD-6CB85D170D84", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0C25DA26-ACF6-4810-A515-BD0C387DBA42", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93D53690-4790-401B-BEFF-528381C36218", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "92C4C49E-FBB7-431B-AE0F-2BC74DB08338", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:autocad_mechanical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4937D51A-6B3B-4A7A-AD57-806814812946", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D4DDC78-6974-4097-BA37-F92B1194CDE2", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E678BEF6-B064-401E-92C6-247EC258FE07", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93BCB8FD-3AE4-4C9F-A2A6-0D63CC5EE0B4", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:autocad_mep:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "70F538D1-54CE-47AF-ADDA-C530A154DD5E", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD7A1D9B-EF32-4415-BCC4-04E2A6972374", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65D59F58-0AA2-4D15-8C75-146CAEC19584", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8FC9B921-51F6-4A2B-A0AC-171FF1192C93", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:autocad_plant_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BF817DAD-6928-4155-B005-430342CDA30B", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BF37A9E5-8B00-44AB-AFFF-CC89D2A96889", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F1309864-F4E5-4BF7-8453-F863F8C463CF", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7589C389-71FF-4E79-B51F-1C36FC72F81D", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:civil_3d:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E35E9352-AEC7-4185-BCBC-103000D084BD", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2E36BB72-4307-4DFC-AFC9-2A99EDEB5BB4", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C56F6AFC-3A8A-4FEE-8D55-184129DD08F6", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "982A47A1-FAA7-45DB-A054-F13B13F3CA49", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:advance_steel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "33337803-1300-419A-B980-7689C7C93F81", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F055DD1C-AE4F-4F46-996E-204A51B09FC7", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0AECA1F-5E40-4EC9-9FB6-BE286D629C55", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CAEB267C-721B-4AC9-96CE-C3DA951519ED", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:autocad:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B0EF835-F58E-4F6E-B35E-EDAB6F19A9CF", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B244631D-FEED-490B-BE83-51B166DF7B78", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1CA4601D-6F27-42E1-8685-0430583DEAA8", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6EDB7216-3270-44FB-A236-19CCCD6052D1", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:autocad_architecture:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55976EE6-BD1D-4DAB-9091-79962C64719C", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "24FD0AE9-5CBA-4D55-A76A-E8B642ABC4D9", "versionEndExcluding": "2022.1.5", "versionStartIncluding": "2022"}, {"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8AE10283-8906-4A81-ACA0-14F7200AA204", "versionEndExcluding": "2023.1.6", "versionStartIncluding": "2023"}, {"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DF1EF951-7456-4621-A64B-C5C37B21D0FA", "versionEndExcluding": "2024.1.5", "versionStartIncluding": "2024"}, {"criteria": "cpe:2.3:a:autodesk:autocad_electrical:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9F533CA0-77A8-46BF-91B3-32A00500E23D", "versionEndExcluding": "2025.1", "versionStartIncluding": "2025"}], "operator": "OR"}]}], "sourceIdentifier": "psirt@autodesk.com"}